przemek980 utworzono 10 lutego 2011 utworzono 10 lutego 2011 Witam, ostatnio mój pecet nie czuje się dobrze Proszę o sprawdzenie logów. Wstawiłem wszystkie pliki jakie miałem z OTL i RSIT OTL [log]OTL logfile created on: 2011-02-10 13:27:06 - Run 4 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Przemek\Desktop\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 50,00% Memory free 4,00 Gb Paging File | 2,00 Gb Available in Paging File | 62,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 29,30 Gb Total Space | 3,25 Gb Free Space | 11,08% Space Free | Partition Type: NTFS Drive D: | 48,83 Gb Total Space | 13,02 Gb Free Space | 26,66% Space Free | Partition Type: NTFS Drive E: | 219,96 Gb Total Space | 200,27 Gb Free Space | 91,05% Space Free | Partition Type: NTFS Computer Name: PRZEMEK-PC | User Name: Przemek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (All) ==========[/color] PRC - [2011-02-04 04:58:58 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe PRC - [2011-02-04 04:58:58 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe PRC - [2011-01-31 10:57:03 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Przemek\Desktop\Downloads\OTL.exe PRC - [2011-01-05 11:31:10 | 000,424,448 | ---- | M] (Sony Ericsson) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe PRC - [2010-12-13 13:52:46 | 000,074,960 | ---- | M] () -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe PRC - [2010-12-07 23:24:58 | 001,595,744 | ---- | M] (Nullsoft, Inc.) -- E:\Winamp\winamp.exe PRC - [2010-11-04 17:15:50 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2010-11-04 17:15:32 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2010-10-07 09:04:26 | 012,661,344 | ---- | M] (GG Network S.A.) -- E:\Gadu-Gadu 10\gg.exe PRC - [2010-09-21 13:03:14 | 001,710,464 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE PRC - [2010-09-21 13:03:14 | 000,193,408 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE PRC - [2010-08-21 06:32:37 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009-12-19 23:00:00 | 006,095,504 | ---- | M] (MySQL AB) -- E:\Xampp\xampp\mysql\bin\mysqld.exe PRC - [2009-12-19 23:00:00 | 000,029,416 | ---- | M] (Apache Software Foundation) -- E:\Xampp\xampp\apache\bin\httpd.exe PRC - [2009-10-31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-10-28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009-07-30 17:51:02 | 000,068,136 | ---- | M] () -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe PRC - [2009-07-14 02:14:47 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe PRC - [2009-07-14 02:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2009-07-14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009-07-14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009-07-14 02:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009-07-14 02:14:23 | 000,261,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2009-07-14 02:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009-07-14 02:14:19 | 000,092,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe PRC - [2009-07-14 02:14:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2009-06-25 07:07:32 | 007,547,424 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe PRC - [2009-05-27 02:27:04 | 029,262,680 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe PRC - [2009-05-26 16:46:10 | 001,159,168 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe PRC - [2009-03-31 09:39:36 | 000,233,472 | ---- | M] (Teruten) -- C:\Windows\System32\FsUsbExService.Exe PRC - [2009-03-30 15:00:54 | 000,221,184 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\Brmfcmon\BrMfcMon.exe PRC - [2009-03-23 17:02:50 | 000,872,448 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\ControlCenter3\BrccMCtl.exe PRC - [2008-11-24 21:31:12 | 000,087,904 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe PRC - [2008-10-25 11:44:34 | 000,031,072 | ---- | M] (Microsoft Corporation) -- E:\Microsoft Office\Office12\GrooveMonitor.exe PRC - [2008-02-18 17:00:02 | 000,028,672 | ---- | M] (Creative Technology Ltd.) -- C:\Windows\V0530Mon.exe PRC - [2007-05-31 08:21:28 | 000,648,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\WindowsMobile\wmdc.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2011-01-31 10:57:03 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Przemek\Desktop\Downloads\OTL.exe MOD - [2010-08-21 06:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll MOD - [2010-07-27 15:03:24 | 012,867,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2010-06-29 06:02:02 | 001,413,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2010-04-07 08:10:36 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2010-03-24 07:37:04 | 001,286,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2009-12-08 12:33:31 | 000,857,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009-12-08 12:32:02 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009-07-14 02:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009-07-14 02:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009-07-14 02:16:17 | 000,811,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009-07-14 02:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009-07-14 02:16:17 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2009-07-14 02:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2009-07-14 02:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009-07-14 02:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009-07-14 02:16:15 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspicli.dll MOD - [2009-07-14 02:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2009-07-14 02:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009-07-14 02:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009-07-14 02:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009-07-14 02:16:13 | 000,652,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009-07-14 02:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sechost.dll MOD - [2009-07-14 02:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009-07-14 02:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samcli.dll MOD - [2009-07-14 02:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009-07-14 02:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009-07-14 02:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009-07-14 02:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\profapi.dll MOD - [2009-07-14 02:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll MOD - [2009-07-14 02:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009-07-14 02:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netutils.dll MOD - [2009-07-14 02:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009-07-14 02:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009-07-14 02:15:36 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009-07-14 02:15:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll MOD - [2009-07-14 02:15:32 | 000,118,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009-07-14 02:15:22 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009-07-14 02:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwmapi.dll MOD - [2009-07-14 02:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\devobj.dll MOD - [2009-07-14 02:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009-07-14 02:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cryptbase.dll MOD - [2009-07-14 02:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2009-07-14 02:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cfgmgr32.dll MOD - [2009-07-14 02:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009-07-14 02:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009-07-14 02:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx MOD - [2009-07-14 02:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (nosGetPlusHelper) getPlus(R) SRV - File not found [Auto | Stopped] -- -- (NMSAccess) SRV - File not found [Auto | Stopped] -- -- (aswUpdSv) SRV - [2010-11-04 17:18:10 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2010-11-04 17:15:50 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2010-11-02 05:36:16 | 000,801,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2010-10-26 16:05:24 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion) SRV - [2010-06-14 14:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010-06-13 07:51:43 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2010-05-06 16:41:52 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-03-18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009-12-19 23:00:00 | 006,095,504 | ---- | M] (MySQL AB) [Auto | Running] -- E:\Xampp\xampp\mysql\bin\mysqld.exe -- (MySQL) SRV - [2009-12-19 23:00:00 | 000,029,416 | ---- | M] (Apache Software Foundation) [Auto | Running] -- E:\Xampp\xampp\apache\bin\httpd.exe -- (Apache2.2) SRV - [2009-07-30 17:51:02 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe -- (GEST Service) SRV - [2009-07-14 02:16:21 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wwansvc.dll -- (WwanSvc) SRV - [2009-07-14 02:16:17 | 000,151,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbiosrvc.dll -- (WbioSrvc) SRV - [2009-07-14 02:16:17 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpo.dll -- (Power) SRV - [2009-07-14 02:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes) SRV - [2009-07-14 02:16:15 | 000,053,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sppuinotify.dll -- (sppuinotify) SRV - [2009-07-14 02:16:13 | 000,043,520 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\RpcEpMap.dll -- (RpcEptMapper) SRV - [2009-07-14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (PNRPsvc) SRV - [2009-07-14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (p2pimsvc) SRV - [2009-07-14 02:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\provsvc.dll -- (HomeGroupProvider) SRV - [2009-07-14 02:16:12 | 000,020,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpauto.dll -- (PNRPAutoReg) SRV - [2009-07-14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-07-14 02:15:36 | 000,194,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ListSvc.dll -- (HomeGroupListener) SRV - [2009-07-14 02:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp) SRV - [2009-07-14 02:15:10 | 000,218,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\defragsvc.dll -- (defragsvc) SRV - [2009-07-14 02:14:59 | 000,076,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\bdesvc.dll -- (BDESVC) SRV - [2009-07-14 02:14:58 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AxInstSv.dll -- (AxInstSV) Instalator formantów ActiveX (AxInstSV) SRV - [2009-07-14 02:14:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appidsvc.dll -- (AppIDSvc) SRV - [2009-07-14 02:14:30 | 000,009,216 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\regedt32.exe -- (.EsetTrialReset) SRV - [2009-07-14 02:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\sppsvc.exe -- (sppsvc) SRV - [2009-03-31 09:39:36 | 000,233,472 | ---- | M] (Teruten) [Auto | Running] -- C:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2008-10-25 11:44:08 | 000,065,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- E:\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service) SRV - [2007-05-31 15:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2007-05-31 15:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-02-10 10:57:49 | 000,017,488 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\gdrv.sys -- (gdrv) DRV - [2010-09-03 06:13:46 | 000,137,144 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\Windows\System32\drivers\eamonm.sys -- (eamonm) DRV - [2010-07-29 12:31:26 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\System32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010-07-29 12:31:26 | 000,096,920 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\epfwwfpr.sys -- (epfwwfpr) DRV - [2010-03-12 17:30:15 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-03-11 20:18:02 | 000,029,696 | ---- | M] (ASUSTek Computer Inc) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ipfnd51.sys -- (ip100Avista) DRV - [2010-03-01 11:43:16 | 000,098,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039bus.sys -- (s1039bus) Sony Ericsson Device 1039 driver (WDM) DRV - [2010-03-01 11:43:12 | 000,124,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039mdm.sys -- (s1039mdm) DRV - [2010-03-01 11:43:12 | 000,117,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039mgmt.sys -- (s1039mgmt) Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM) DRV - [2010-03-01 11:43:12 | 000,113,904 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039obex.sys -- (s1039obex) DRV - [2010-03-01 11:43:12 | 000,014,960 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039mdfl.sys -- (s1039mdfl) DRV - [2010-03-01 11:43:10 | 000,123,504 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039unic.sys -- (s1039unic) Sony Ericsson Device 1039 USB Ethernet Emulation (WDM) DRV - [2010-03-01 11:43:10 | 000,025,456 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039nd5.sys -- (s1039nd5) Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS) DRV - [2010-02-26 13:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010-02-26 13:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010-02-26 13:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010-02-26 13:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-14 17:02:00 | 000,273,728 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\V0530Vid.sys -- (V0530Dev) DRV - [2009-12-11 08:44:02 | 000,133,720 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\ksecpkg.sys -- (KSecPkg) DRV - [2009-07-30 12:58:26 | 000,187,392 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rt86win7.sys -- (RTL8167) DRV - [2009-07-14 02:26:21 | 000,015,952 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\cmdide.sys -- (cmdide) DRV - [2009-07-14 02:26:17 | 000,297,552 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpahci.sys -- (adpahci) DRV - [2009-07-14 02:26:15 | 000,422,976 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adp94xx.sys -- (adp94xx) DRV - [2009-07-14 02:26:15 | 000,159,312 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsbs.sys -- (amdsbs) DRV - [2009-07-14 02:26:15 | 000,146,512 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpu320.sys -- (adpu320) DRV - [2009-07-14 02:26:15 | 000,086,608 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arcsas.sys -- (arcsas) DRV - [2009-07-14 02:26:15 | 000,079,952 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsata.sys -- (amdsata) DRV - [2009-07-14 02:26:15 | 000,076,368 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arc.sys -- (arc) DRV - [2009-07-14 02:26:15 | 000,023,616 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\amdxata.sys -- (amdxata) DRV - [2009-07-14 02:26:15 | 000,014,400 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\aliide.sys -- (aliide) DRV - [2009-07-14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvstor.sys -- (nvstor) DRV - [2009-07-14 02:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvraid.sys -- (nvraid) DRV - [2009-07-14 02:20:44 | 000,044,624 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nfrd960.sys -- (nfrd960) DRV - [2009-07-14 02:20:37 | 000,089,168 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas.sys -- (LSI_SAS) DRV - [2009-07-14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iaStorV.sys -- (iaStorV) DRV - [2009-07-14 02:20:36 | 000,235,584 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MegaSR.sys -- (MegaSR) DRV - [2009-07-14 02:20:36 | 000,096,848 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_scsi.sys -- (LSI_SCSI) DRV - [2009-07-14 02:20:36 | 000,095,824 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_fc.sys -- (LSI_FC) DRV - [2009-07-14 02:20:36 | 000,054,864 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV - [2009-07-14 02:20:36 | 000,041,040 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iirsp.sys -- (iirsp) DRV - [2009-07-14 02:20:36 | 000,030,800 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\megasas.sys -- (megasas) DRV - [2009-07-14 02:20:36 | 000,013,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hwpolicy.sys -- (hwpolicy) DRV - [2009-07-14 02:20:28 | 000,453,712 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\elxstor.sys -- (elxstor) DRV - [2009-07-14 02:20:28 | 000,070,720 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\djsvs.sys -- (aic78xx) DRV - [2009-07-14 02:20:28 | 000,067,152 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HpSAMD.sys -- (HpSAMD) DRV - [2009-07-14 02:20:28 | 000,046,160 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\fsdepends.sys -- (FsDepends) DRV - [2009-07-14 02:19:11 | 000,141,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vsmraid.sys -- (vsmraid) DRV - [2009-07-14 02:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009-07-14 02:19:10 | 000,159,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vhdmp.sys -- (vhdmp) DRV - [2009-07-14 02:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009-07-14 02:19:10 | 000,032,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vdrvroot.sys -- (vdrvroot) DRV - [2009-07-14 02:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-14 02:19:10 | 000,016,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\viaide.sys -- (viaide) DRV - [2009-07-14 02:19:04 | 001,383,488 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql2300.sys -- (ql2300) DRV - [2009-07-14 02:19:04 | 000,173,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\rdyboost.sys -- (rdyboost) DRV - [2009-07-14 02:19:04 | 000,106,064 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql40xx.sys -- (ql40xx) DRV - [2009-07-14 02:19:04 | 000,077,888 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\sisraid4.sys -- (SiSRaid4) DRV - [2009-07-14 02:19:04 | 000,043,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\pcw.sys -- (pcw) DRV - [2009-07-14 02:19:04 | 000,040,016 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\SiSRaid2.sys -- (SiSRaid2) DRV - [2009-07-14 02:19:04 | 000,021,072 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\stexstor.sys -- (stexstor) DRV - [2009-07-14 02:17:54 | 000,369,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\cng.sys -- (CNG) DRV - [2009-07-14 01:57:25 | 000,272,128 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\Brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2009-07-14 01:02:41 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rdpbus.sys -- (rdpbus) DRV - [2009-07-14 01:01:41 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\RDPREFMP.sys -- (RDPREFMP) DRV - [2009-07-14 00:55:00 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV - [2009-07-14 00:53:51 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\wfplwf.sys -- (WfpLwf) DRV - [2009-07-14 00:52:44 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ndiscap.sys -- (NdisCap) DRV - [2009-07-14 00:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifibus.sys -- (vwifibus) DRV - [2009-07-14 00:52:00 | 000,163,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\1394ohci.sys -- (1394ohci) DRV - [2009-07-14 00:51:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\umpass.sys -- (UmPass) DRV - [2009-07-14 00:51:23 | 000,080,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM) DRV - [2009-07-14 00:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 00:51:08 | 000,004,096 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mshidkmdf.sys -- (mshidkmdf) DRV - [2009-07-14 00:46:55 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MTConfig.sys -- (MTConfig) DRV - [2009-07-14 00:45:26 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CompositeBus.sys -- (CompositeBus) DRV - [2009-07-14 00:36:52 | 000,050,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\appid.sys -- (AppID) DRV - [2009-07-14 00:33:50 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\System32\drivers\scfilter.sys -- (scfilter) DRV - [2009-07-14 00:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009-07-14 00:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-14 00:24:05 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\discache.sys -- (discache) DRV - [2009-07-14 00:16:36 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\acpipmi.sys -- (AcpiPmi) DRV - [2009-07-14 00:11:04 | 000,052,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdppm.sys -- (AmdPPM) DRV - [2009-07-13 23:54:14 | 000,026,624 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009-07-13 23:53:33 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbMdm.sys -- (BrUsbMdm) DRV - [2009-07-13 23:53:33 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbSer.sys -- (BrUsbSer) DRV - [2009-07-13 23:53:32 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrSerWdm.sys -- (BrSerWdm) DRV - [2009-07-13 23:53:28 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltLo.sys -- (BrFiltLo) DRV - [2009-07-13 23:53:28 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltUp.sys -- (BrFiltUp) DRV - [2009-07-13 23:09:17 | 004,194,816 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag) DRV - [2009-07-13 23:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x) DRV - [2009-07-13 23:02:48 | 003,100,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\evbdx.sys -- (ebdrv) DRV - [2009-07-13 23:02:48 | 000,430,080 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\bxvbdx.sys -- (b06bdrv) DRV - [2009-06-25 07:07:34 | 002,375,776 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2009-03-31 09:39:36 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2009-03-20 10:01:26 | 000,121,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2009-03-20 10:01:26 | 000,090,112 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM) DRV - [2009-03-20 10:01:26 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2006-01-13 14:00:52 | 000,015,872 | ---- | M] (Flint Incorporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\vd_filedisk.sys -- (VD_FileDisk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3 FF - prefs.js..extensions.enabledItems: {e3f6c2cc-d8db-498c-af6c-499fb211db97}:1.10.2 FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: E:\Nokia PC Suite\Nokia PC Suite 7\bkmrksync\ [2010-08-09 13:13:23 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0b11\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 11\components [2011-02-10 12:28:27 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0b11\extensions\\Plugins: C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugins FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Components: E:\Mozilla Thundebird\components [2011-02-08 19:45:03 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Plugins: E:\Mozilla Thundebird\plugins [2011-02-08 19:48:21 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-01-31 10:21:54 | 000,000,000 | ---D | M] [2010-05-11 17:30:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Extensions [2010-05-11 17:30:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2010-03-14 15:29:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Extensions\IMVUClientXUL@imvu.com [2011-02-10 13:09:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions [2010-12-25 19:00:21 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2011-02-10 10:59:53 | 000,000,000 | ---D | M] (Page Speed) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions\{e3f6c2cc-d8db-498c-af6c-499fb211db97} [2011-02-07 18:51:05 | 000,000,000 | ---D | M] (Firebug) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions\firebug@software.joehewitt.com File not found (No name found) -- () (No name found) -- C:\USERS\PRZEMEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G0N33MB1.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM.XPI O1 HOSTS File: ([2009-06-10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Java\bin\jp2ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - File not found O3 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [GrooveMonitor] E:\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation) O4 - HKLM..\Run: [NPSStartup] File not found O4 - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [V0530Mon.exe] C:\Windows\V0530Mon.exe (Creative Technology Ltd.) O4 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000..\Run: [AdobeBridge] File not found O4 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000..\Run: [Sony Ericsson PC Companion] C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - E:\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01) O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.57.1 O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - E:\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - E:\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation) O30 - LSA: Security Packages - (livessp) - C:\Windows\System32\livessp.dll (Microsoft Corp.) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{3b698931-2ed3-11e0-a0ae-002215d644dd}\Shell - "" = AutoRun O33 - MountPoints2\{3b698931-2ed3-11e0-a0ae-002215d644dd}\Shell\AutoRun\command - "" = G:\Startme.exe O33 - MountPoints2\{58a01556-2e00-11df-8013-002215d644dd}\Shell - "" = AutoRun O33 - MountPoints2\{58a01556-2e00-11df-8013-002215d644dd}\Shell\AutoRun\command - "" = I:\Launcher.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: FastUserSwitchingCompatibility - File not found NetSvcs: Ias - File not found NetSvcs: Nla - File not found NetSvcs: Ntmssvc - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: SRService - File not found NetSvcs: WmdmPmSp - File not found NetSvcs: LogonHours - File not found NetSvcs: PCAudit - File not found NetSvcs: helpsvc - File not found NetSvcs: uploadmgr - File not found NetSvcs: Themes - C:\Windows\System32\themeservice.dll (Microsoft Corporation) NetSvcs: BDESVC - C:\Windows\System32\bdesvc.dll (Microsoft Corporation) MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk - - File not found MsConfig - StartUpFolder: C:^Users^Przemek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^IMVU.lnk - - File not found MsConfig - StartUpReg: [b]Adobe ARM[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]Adobe Reader Speed Launcher[/b] - hkey= - key= - E:\Adobe Acrobat Reader\Reader\Reader_sl.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]AdobeCS4ServiceManager[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]AutoStartNPSAgent[/b] - hkey= - key= - E:\Samsung PcStudio\NPSAgent.exe (Samsung Electronics Co., Ltd.) MsConfig - StartUpReg: [b]DAEMON Tools Lite[/b] - hkey= - key= - E:\Daemon Tools\DTLite.exe (DT Soft Ltd) MsConfig - StartUpReg: [b]Gadu-Gadu 10[/b] - hkey= - key= - E:\Gadu-Gadu 10\gg.exe (GG Network S.A.) MsConfig - StartUpReg: [b]IPLA![/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]NeroFilterCheck[/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]PC Suite Tray[/b] - hkey= - key= - E:\Nokia PC Suite\Nokia PC Suite 7\PCSuite.exe (Nokia) MsConfig - StartUpReg: [b]Skype[/b] - hkey= - key= - C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) MsConfig - StartUpReg: [b]SunJavaUpdateSched[/b] - hkey= - key= - C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.) MsConfig - State: "startup" - 2 SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: NTDS - File not found SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Power - C:\Windows\System32\umpo.dll (Microsoft Corporation) SafeBootMin: Primary disk - Driver Group SafeBootMin: RpcEptMapper - C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation) SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: System Bus Extender - Driver Group SafeBootMin: vmms - Service SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: Dhcp - C:\Windows\System32\dhcpcore.dll (Microsoft Corporation) SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: Messenger - Service SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: ndiscap - C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation) SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: NTDS - File not found SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Power - C:\Windows\System32\umpo.dll (Microsoft Corporation) SafeBootNet: Primary disk - Driver Group SafeBootNet: rdsessmgr - Service SafeBootNet: RpcEptMapper - C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation) SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: vmms - Service SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-02-10 12:28:25 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox 4.0 Beta 11 [2011-02-10 12:07:21 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Roaming\Opera [2011-02-10 12:07:21 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Local\Opera [2011-02-10 12:07:17 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2011-02-08 19:28:12 | 000,000,000 | ---D | C] -- C:\Users\Przemek\dwhelper [2011-02-04 17:28:27 | 000,000,000 | ---D | C] -- C:\Users\Przemek\Desktop\Sony Ericsson W300i [2011-02-02 15:11:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony Ericsson [2011-02-02 15:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Ericsson [2011-02-02 15:11:13 | 000,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson [2011-01-31 11:53:09 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro [2011-01-31 11:53:09 | 000,000,000 | ---D | C] -- C:\rsit [2011-01-31 10:21:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET [2011-01-31 10:21:53 | 000,000,000 | ---D | C] -- C:\Program Files\ESET [2011-01-31 09:42:36 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Roaming\BitDefender [2011-01-31 09:42:18 | 000,000,000 | ---D | C] -- C:\ProgramData\BitDefender [2011-01-31 09:41:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\BitDefender [2011-01-30 23:30:34 | 000,017,488 | ---- | C] (Windows (R) 2000 DDK provider) -- C:\Windows\gdrv.sys [2011-01-23 15:53:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Watchtower Library 2010 [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-02-10 13:29:04 | 000,000,294 | -H-- | M] () -- C:\Windows\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job [2011-02-10 13:14:03 | 000,000,250 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2011-02-10 13:12:00 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-02-10 13:05:25 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempqS4604.html [2011-02-10 13:05:25 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempQe4604.html [2011-02-10 12:28:28 | 000,002,133 | ---- | M] () -- C:\Users\Przemek\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:28:28 | 000,002,109 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:07:20 | 000,001,794 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2011-02-10 12:01:08 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempIR1652.html [2011-02-10 11:05:20 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TemphO4860.html [2011-02-10 11:05:19 | 000,017,360 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011-02-10 11:05:19 | 000,017,360 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011-02-10 10:58:04 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-02-10 10:57:49 | 000,017,488 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\Windows\gdrv.sys [2011-02-10 10:57:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-02-10 10:57:36 | 1609,424,896 | -HS- | M] () -- C:\hiberfil.sys [2011-02-10 10:27:14 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempDS4728.html [2011-02-10 10:27:14 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempRF4728.html [2011-02-10 10:05:31 | 000,757,208 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-02-10 10:05:31 | 000,682,336 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-02-10 10:05:31 | 000,159,196 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-02-10 10:05:31 | 000,128,844 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-02-09 12:44:07 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempQt3832.html [2011-02-09 11:10:44 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempqD3548.html [2011-02-09 10:07:47 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempssU876.html [2011-02-08 20:53:32 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempoI4560.html [2011-02-08 20:53:32 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempxH4560.html [2011-02-08 19:29:05 | 003,810,951 | ---- | M] () -- C:\Users\Przemek\Desktop\11.mp3 [2011-02-08 14:56:49 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempQn5756.html [2011-02-08 11:38:11 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempnQ2464.html [2011-02-08 11:38:11 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempvC2464.html [2011-02-07 22:05:21 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempqc4400.html [2011-02-07 22:05:21 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempGa4400.html [2011-02-07 20:34:08 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Templm5252.html [2011-02-07 18:50:14 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempEd4612.html [2011-02-07 17:29:02 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempoO3140.html [2011-02-07 17:29:02 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempaW3140.html [2011-02-05 23:57:54 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempke4588.html [2011-02-05 23:57:54 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Temppt4588.html [2011-02-05 20:39:33 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempcW1972.html [2011-02-05 19:28:58 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempaM2904.html [2011-02-05 19:28:58 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TemppE2904.html [2011-02-04 18:51:02 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TemprJ4360.html [2011-02-04 18:51:02 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempCD4360.html [2011-02-04 09:49:24 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempXi2628.html [2011-02-04 09:49:24 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempNi2628.html [2011-02-02 17:14:55 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempFw3036.html [2011-02-02 15:22:14 | 000,002,229 | ---- | M] () -- C:\Users\Public\Desktop\Sony Ericsson PC Companion 2.0.lnk [2011-02-02 13:02:26 | 000,438,184 | ---- | M] () -- C:\Windows\unins000.dat [2011-02-02 13:02:08 | 000,725,005 | ---- | M] () -- C:\Windows\unins000.exe [2011-02-02 11:19:00 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempqy4604.html [2011-02-01 16:51:59 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempPs4876.html [2011-02-01 15:49:23 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempxx4472.html [2011-02-01 14:09:23 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempMs1156.html [2011-02-01 14:09:23 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Temprb1156.html [2011-02-01 10:17:46 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempCl3076.html [2011-02-01 10:17:46 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempKH3076.html [2011-01-31 20:45:13 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TemphT5048.html [2011-01-31 10:05:37 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt [2011-01-31 09:53:07 | 000,081,984 | ---- | M] () -- C:\Windows\System32\bdod.bin [2011-01-30 23:23:42 | 000,000,010 | ---- | M] () -- C:\Windows\GSetup.ini [2011-01-30 18:51:56 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempDe5840.html [2011-01-30 08:16:20 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempoA2492.html [2011-01-30 08:16:20 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempNo2492.html [2011-01-27 19:43:53 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempof3260.html [2011-01-24 20:46:20 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempVg5728.html [2011-01-24 20:46:20 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempgZ5728.html [2011-01-23 16:56:24 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempNl4648.html [2011-01-23 16:56:24 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempdH4648.html [2011-01-23 15:53:26 | 000,000,846 | ---- | M] () -- C:\Users\Przemek\Desktop\Watchtower Library 2010 - wydanie polskie.lnk [2011-01-22 18:56:07 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempuU5404.html [2011-01-22 18:56:07 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempzt5404.html [2011-01-22 15:21:10 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempzD5300.html [2011-01-22 15:21:10 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempUT5300.html [2011-01-20 21:38:52 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempJW4188.html [2011-01-18 16:00:53 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini [2011-01-18 15:18:03 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempTi3564.html [2011-01-18 14:29:24 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempWl5012.html [2011-01-18 14:29:24 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\Tempic5012.html [2011-01-16 16:40:19 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempvN5584.html [2011-01-16 16:40:19 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempHA5584.html [2011-01-13 16:46:36 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempTl1068.html [2011-01-13 16:46:36 | 000,002,089 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempNb1068.html [2011-01-11 18:54:29 | 000,002,432 | ---- | M] () -- C:\Users\Przemek\AppData\Local\TempQN3872.html [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-02-10 13:05:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempqS4604.html [2011-02-10 13:05:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQe4604.html [2011-02-10 12:28:28 | 000,002,133 | ---- | C] () -- C:\Users\Przemek\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:28:27 | 000,002,121 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:28:27 | 000,002,109 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:07:20 | 000,001,806 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk [2011-02-10 12:07:20 | 000,001,794 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2011-02-10 11:32:15 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIR1652.html [2011-02-10 10:59:40 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphO4860.html [2011-02-10 09:53:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDS4728.html [2011-02-10 09:53:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRF4728.html [2011-02-09 12:24:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQt3832.html [2011-02-09 10:08:08 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempqD3548.html [2011-02-09 09:56:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempssU876.html [2011-02-08 19:29:04 | 003,810,951 | ---- | C] () -- C:\Users\Przemek\Desktop\11.mp3 [2011-02-08 19:25:04 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoI4560.html [2011-02-08 19:25:04 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempxH4560.html [2011-02-08 13:56:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQn5756.html [2011-02-08 09:07:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnQ2464.html [2011-02-08 09:07:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvC2464.html [2011-02-07 21:05:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqc4400.html [2011-02-07 21:05:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGa4400.html [2011-02-07 19:43:53 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templm5252.html [2011-02-07 18:49:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEd4612.html [2011-02-07 15:46:37 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoO3140.html [2011-02-07 15:46:37 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaW3140.html [2011-02-05 21:54:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempke4588.html [2011-02-05 21:54:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temppt4588.html [2011-02-05 20:32:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempcW1972.html [2011-02-05 17:24:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaM2904.html [2011-02-05 17:24:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemppE2904.html [2011-02-04 18:06:45 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprJ4360.html [2011-02-04 18:06:45 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempCD4360.html [2011-02-04 09:40:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXi2628.html [2011-02-04 09:40:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNi2628.html [2011-02-02 17:14:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFw3036.html [2011-02-02 15:11:19 | 000,002,229 | ---- | C] () -- C:\Users\Public\Desktop\Sony Ericsson PC Companion 2.0.lnk [2011-02-02 11:18:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqy4604.html [2011-02-01 16:51:32 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPs4876.html [2011-02-01 15:42:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempxx4472.html [2011-02-01 13:57:04 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempMs1156.html [2011-02-01 13:57:04 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temprb1156.html [2011-02-01 08:53:46 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempCl3076.html [2011-02-01 08:53:46 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKH3076.html [2011-01-31 20:44:59 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphT5048.html [2011-01-31 09:53:07 | 000,081,984 | ---- | C] () -- C:\Windows\System32\bdod.bin [2011-01-30 17:05:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDe5840.html [2011-01-30 08:14:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoA2492.html [2011-01-30 08:14:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNo2492.html [2011-01-27 18:33:32 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempof3260.html [2011-01-24 20:38:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVg5728.html [2011-01-24 20:38:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempgZ5728.html [2011-01-23 15:53:26 | 000,000,846 | ---- | C] () -- C:\Users\Przemek\Desktop\Watchtower Library 2010 - wydanie polskie.lnk [2011-01-23 15:15:35 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNl4648.html [2011-01-23 15:15:35 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempdH4648.html [2011-01-22 17:36:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuU5404.html [2011-01-22 17:36:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempzt5404.html [2011-01-22 14:30:08 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzD5300.html [2011-01-22 14:30:08 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUT5300.html [2011-01-20 20:28:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJW4188.html [2011-01-18 14:52:08 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTi3564.html [2011-01-18 14:06:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWl5012.html [2011-01-18 14:06:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempic5012.html [2011-01-16 14:00:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvN5584.html [2011-01-16 14:00:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHA5584.html [2011-01-13 16:21:20 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTl1068.html [2011-01-13 16:21:20 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNb1068.html [2011-01-11 18:02:38 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQN3872.html [2011-01-09 16:05:06 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOf4312.html [2011-01-06 09:43:00 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempyi4420.html [2011-01-03 17:06:08 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempop5708.html [2011-01-03 17:06:08 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBI5708.html [2011-01-02 17:23:00 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEd4768.html [2011-01-02 17:23:00 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQb4768.html [2011-01-02 13:05:24 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempzn1084.html [2011-01-02 13:05:24 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWx1084.html [2011-01-01 19:09:54 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQf5224.html [2011-01-01 19:09:54 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDp5224.html [2011-01-01 11:35:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templx4608.html [2010-12-31 17:37:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsD5988.html [2010-12-30 14:31:53 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiW1444.html [2010-12-29 20:45:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGW1192.html [2010-12-29 20:45:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempmJ1192.html [2010-12-29 18:32:29 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvI4252.html [2010-12-29 18:32:29 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOH4252.html [2010-12-28 17:14:12 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEl4336.html [2010-12-28 17:14:12 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempix4336.html [2010-12-28 10:33:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempof2948.html [2010-12-28 10:33:48 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempyS2948.html [2010-12-28 10:22:37 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempdV5244.html [2010-12-28 10:22:37 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUy5244.html [2010-12-27 20:06:41 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVP6132.html [2010-12-27 20:06:41 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYT6132.html [2010-12-27 09:13:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempxt5044.html [2010-12-27 09:13:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempbn5044.html [2010-12-26 19:29:42 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempdT4240.html [2010-12-26 19:29:42 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwH4240.html [2010-12-23 19:37:19 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWh5376.html [2010-12-23 15:27:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempct5760.html [2010-12-23 15:27:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTc5760.html [2010-12-22 13:00:29 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempMh5272.html [2010-12-22 13:00:29 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYF5272.html [2010-12-20 15:50:53 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNm4436.html [2010-12-20 15:50:53 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAK4436.html [2010-12-19 17:15:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphE6092.html [2010-12-19 17:15:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempnm6092.html [2010-12-18 00:16:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKP2940.html [2010-12-18 00:16:21 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGm2940.html [2010-12-17 21:44:24 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXq4292.html [2010-12-17 21:44:24 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempam4292.html [2010-12-15 16:02:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempfY4224.html [2010-12-15 16:02:43 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWT4224.html [2010-12-15 15:31:29 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempky5504.html [2010-12-15 15:31:29 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHh5504.html [2010-12-14 22:14:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvK1228.html [2010-12-14 22:14:43 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuG1228.html [2010-12-14 19:38:54 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVk4344.html [2010-12-14 19:38:53 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXw4344.html [2010-12-14 17:53:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempdK4212.html [2010-12-13 19:36:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJA4800.html [2010-12-13 19:36:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZO4800.html [2010-12-13 17:09:46 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempbV5920.html [2010-12-13 17:09:46 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temphi5920.html [2010-12-12 18:42:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempdrB400.html [2010-12-12 18:42:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwOK400.html [2010-12-10 10:21:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempqC2292.html [2010-12-10 10:21:21 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOp2292.html [2010-12-09 14:36:10 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoV5688.html [2010-12-09 14:36:10 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempmg5688.html [2010-12-06 14:50:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprO5076.html [2010-12-06 14:50:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnJ5076.html [2010-12-03 13:42:58 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temphk3784.html [2010-12-03 13:42:58 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempLu3784.html [2010-12-02 20:10:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOg5772.html [2010-12-02 20:10:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempvh5772.html [2010-12-02 08:09:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphT4192.html [2010-12-02 08:09:26 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempin4192.html [2010-12-01 16:25:42 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempbR2124.html [2010-11-30 16:22:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempuq4692.html [2010-11-30 16:22:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTg4692.html [2010-11-26 17:26:38 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temppj3292.html [2010-11-26 17:26:38 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempCi3292.html [2010-11-25 16:59:29 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempxz4416.html [2010-11-25 16:59:29 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempmL4416.html [2010-11-22 19:17:51 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templi4148.html [2010-11-19 18:31:44 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTX3312.html [2010-11-19 18:31:44 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUk3312.html [2010-11-19 18:15:30 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEF4504.html [2010-11-19 18:15:30 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUx4504.html [2010-11-17 17:07:59 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempzb5636.html [2010-11-15 15:01:13 | 000,000,019 | ---- | C] () -- C:\Windows\cie12.ini [2010-11-13 19:15:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRX5572.html [2010-11-13 19:15:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZS5572.html [2010-11-12 16:12:52 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjf4128.html [2010-11-12 16:12:52 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBl4128.html [2010-11-11 11:44:27 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemptI5292.html [2010-11-11 11:44:27 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwt5292.html [2010-11-06 18:29:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGM5752.html [2010-11-06 18:29:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOp5752.html [2010-11-05 21:57:02 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEF5596.html [2010-11-05 21:57:02 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAy5596.html [2010-11-03 13:50:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIH5136.html [2010-11-03 13:50:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFS5136.html [2010-11-02 18:29:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQC4824.html [2010-11-02 18:29:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempgj4824.html [2010-10-28 18:12:40 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIh3252.html [2010-10-28 18:12:40 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNu3252.html [2010-10-22 18:18:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiO1600.html [2010-10-22 18:18:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBt1600.html [2010-10-22 14:47:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempyB4148.html [2010-10-22 14:47:43 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempoz4148.html [2010-10-20 09:43:39 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempty1944.html [2010-10-20 09:43:39 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempcj1944.html [2010-10-19 19:18:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJA5568.html [2010-10-19 19:18:43 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsP5568.html [2010-10-19 18:18:01 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXw1260.html [2010-10-19 18:18:01 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPx1260.html [2010-10-18 19:13:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempjD4756.html [2010-10-18 19:13:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzK4756.html [2010-10-18 18:05:01 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNH4980.html [2010-10-18 18:05:01 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaZ4980.html [2010-10-18 15:08:42 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGo4676.html [2010-10-18 15:08:42 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemptK4676.html [2010-10-17 12:24:09 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempus4456.html [2010-10-17 12:24:09 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemppR4456.html [2010-10-17 07:12:52 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempSP4632.html [2010-10-17 07:12:52 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiL4632.html [2010-10-16 16:20:12 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templg1292.html [2010-10-16 16:20:12 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZb1292.html [2010-10-15 12:16:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBt2960.html [2010-10-15 12:16:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUV2960.html [2010-10-08 13:11:54 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkA2332.html [2010-10-08 13:11:54 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempve2332.html [2010-10-07 15:57:08 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPE1752.html [2010-10-05 13:41:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempuy1500.html [2010-10-05 13:41:21 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEx1500.html [2010-10-04 17:55:01 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdz1800.html [2010-10-04 17:55:01 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjg1800.html [2010-10-01 17:01:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempfC1992.html [2010-10-01 17:01:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFG1992.html [2010-09-30 17:01:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqq4488.html [2010-09-30 17:01:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temptw4488.html [2010-09-27 18:28:51 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGO3272.html [2010-09-27 18:28:51 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphE3272.html [2010-09-19 12:35:15 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphO2600.html [2010-09-19 12:35:15 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemptV2600.html [2010-09-19 12:32:49 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempxO3856.html [2010-09-19 12:32:49 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGr3856.html [2010-09-18 20:48:58 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNV3508.html [2010-09-18 20:48:58 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwX3508.html [2010-09-17 15:45:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFO4620.html [2010-09-17 15:45:21 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuG4620.html [2010-09-16 17:46:44 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOO2828.html [2010-09-16 17:46:44 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsQ2828.html [2010-09-09 17:25:10 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKl4068.html [2010-08-31 18:45:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempjY5648.html [2010-08-31 18:45:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemppN5648.html [2010-08-31 18:03:29 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temppc4000.html [2010-08-31 18:03:29 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZf4000.html [2010-08-31 14:44:31 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzVR380.html [2010-08-31 14:44:31 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHHU380.html [2010-08-31 13:09:49 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqiv940.html [2010-08-31 13:09:49 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempewI940.html [2010-08-31 06:30:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUv5032.html [2010-08-31 06:30:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprI5032.html [2010-08-23 12:38:34 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiI3600.html [2010-08-23 12:38:34 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAg3600.html [2010-08-22 13:39:04 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDk4920.html [2010-08-22 13:39:04 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temppb4920.html [2010-08-22 13:33:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempcr3824.html [2010-08-22 13:33:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqr3824.html [2010-08-15 13:45:04 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempzo3124.html [2010-08-15 13:45:04 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuF3124.html [2010-08-13 13:21:38 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPX2304.html [2010-08-12 14:59:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoL1164.html [2010-08-12 14:59:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZb1164.html [2010-08-12 11:46:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHx5716.html [2010-08-12 11:46:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWP5716.html [2010-08-11 13:37:40 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJB1076.html [2010-08-11 13:37:40 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFU1076.html [2010-08-10 20:54:31 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVzL264.html [2010-08-10 20:54:31 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDmG264.html [2010-08-09 12:52:17 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempoz5392.html [2010-08-07 20:21:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNu2080.html [2010-08-07 20:21:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWQ2080.html [2010-08-05 20:05:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsW2720.html [2010-08-05 20:05:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBR2720.html [2010-08-05 11:34:19 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temptg3768.html [2010-08-05 08:31:41 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempgh2080.html [2010-08-05 08:31:41 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfb2080.html [2010-08-04 12:21:24 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemppY1532.html [2010-08-03 13:13:49 | 002,325,304 | ---- | C] () -- C:\Windows\System32\DK2INST.DLL [2010-08-03 11:56:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwx3408.html [2010-08-03 11:56:28 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVD3408.html [2010-08-03 09:19:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempkm5924.html [2010-08-03 09:19:21 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdn5924.html [2010-08-03 08:26:10 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAd3908.html [2010-08-02 12:14:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRq1480.html [2010-08-02 12:14:48 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvX1480.html [2010-08-01 09:42:42 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDX2572.html [2010-07-30 20:41:49 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJt5500.html [2010-07-30 20:41:49 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempsq5500.html [2010-07-28 08:14:54 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWc3864.html [2010-07-28 08:14:54 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemppP3864.html [2010-07-27 13:03:32 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTVE932.html [2010-07-27 13:03:32 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJQB932.html [2010-07-26 17:31:05 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempeE2460.html [2010-07-26 07:45:34 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempLS2628.html [2010-07-26 07:45:34 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPl2628.html [2010-07-24 14:29:59 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZK3040.html [2010-07-24 14:29:59 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUH3040.html [2010-07-23 18:10:17 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempMH1880.html [2010-07-23 18:10:17 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYe1880.html [2010-07-23 07:42:04 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYVV424.html [2010-07-23 07:42:04 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiLx424.html [2010-07-22 18:14:59 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUI2848.html [2010-07-22 18:14:59 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJT2848.html [2010-07-22 07:12:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempxe3488.html [2010-07-22 07:12:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjc3488.html [2010-07-21 16:05:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoX3196.html [2010-07-20 15:34:14 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdb2216.html [2010-07-20 15:34:14 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempgl2216.html [2010-07-20 10:59:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempawK788.html [2010-07-20 10:59:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkOS788.html [2010-07-19 17:12:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXM1492.html [2010-07-19 14:47:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNn1612.html [2010-07-19 14:47:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempfH1612.html [2010-07-18 21:12:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTH4060.html [2010-07-18 21:12:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJI4060.html [2010-07-18 19:27:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemplD5252.html [2010-07-18 19:27:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaM5252.html [2010-07-16 18:56:44 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempmVp968.html [2010-07-16 18:56:44 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRrp968.html [2010-07-15 20:01:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempos2044.html [2010-07-14 10:41:09 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempvd2768.html [2010-07-13 19:53:05 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnI2036.html [2010-07-13 19:53:05 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempsf2036.html [2010-07-13 10:56:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwd1108.html [2010-07-11 16:01:17 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini [2010-07-11 12:19:20 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJz3260.html [2010-07-11 12:19:20 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDx3260.html [2010-07-11 12:06:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempzb1620.html [2010-07-11 12:06:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDC1620.html [2010-07-01 12:42:20 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempeF2112.html [2010-07-01 06:29:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempcR1736.html [2010-07-01 06:29:26 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRe1736.html [2010-06-30 11:53:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRN2660.html [2010-06-30 11:53:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnA2660.html [2010-06-30 06:15:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvP1920.html [2010-06-30 06:15:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHG1920.html [2010-06-29 15:17:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKo1676.html [2010-06-29 08:27:38 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempbV3844.html [2010-06-29 08:27:38 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAj3844.html [2010-06-28 21:12:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdv5744.html [2010-06-28 21:12:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temphh5744.html [2010-06-28 18:46:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfp2024.html [2010-06-28 11:26:15 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTs3672.html [2010-06-28 11:26:15 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUs3672.html [2010-06-27 20:34:14 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIY1104.html [2010-06-26 19:39:00 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAa1212.html [2010-06-25 11:44:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempnt3516.html [2010-06-25 11:44:26 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfs3516.html [2010-06-25 08:13:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempkh3048.html [2010-06-25 08:13:48 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQQ3048.html [2010-06-25 06:49:52 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOl2832.html [2010-06-25 06:49:52 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOi2832.html [2010-06-24 19:03:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTe2932.html [2010-06-24 19:03:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempnl2932.html [2010-06-24 11:43:39 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempra3360.html [2010-06-24 11:43:39 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempzv3360.html [2010-06-24 11:10:45 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQX1964.html [2010-06-24 11:10:45 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempSZ1964.html [2010-06-24 06:30:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaY3508.html [2010-06-24 06:30:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoS3508.html [2010-06-23 11:42:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOu3588.html [2010-06-23 11:42:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZL3588.html [2010-06-23 06:46:41 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHI3360.html [2010-06-23 06:46:41 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjy3360.html [2010-06-22 18:18:44 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnC3260.html [2010-06-22 18:18:44 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphI3260.html [2010-06-22 13:23:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNf2756.html [2010-06-22 13:23:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempbp2756.html [2010-06-22 07:00:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJf2860.html [2010-06-22 07:00:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAG2860.html [2010-06-21 19:17:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWkI728.html [2010-06-21 19:17:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkDQ728.html [2010-06-21 06:22:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempkp1368.html [2010-06-21 06:22:28 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVa1368.html [2010-06-20 17:47:32 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemppYP764.html [2010-06-20 17:47:32 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemplUZ764.html [2010-06-20 13:47:34 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempMB1632.html [2010-06-20 13:47:34 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempqS1632.html [2010-06-20 08:57:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGz3488.html [2010-06-20 08:57:26 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqa3488.html [2010-06-19 18:54:19 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempoI2800.html [2010-06-19 18:54:19 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempos2800.html [2010-06-19 09:20:09 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKK1032.html [2010-06-19 09:20:09 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWw1032.html [2010-06-17 11:55:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXQ3460.html [2010-06-17 11:55:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUj3460.html [2010-06-17 06:15:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAx3032.html [2010-06-17 06:15:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUI3032.html [2010-06-16 20:33:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKY1740.html [2010-06-16 13:37:35 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempfE2172.html [2010-06-16 13:37:35 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temphh2172.html [2010-06-15 06:29:37 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPO3564.html [2010-06-15 06:29:37 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempxW3564.html [2010-06-14 17:14:37 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temptx1796.html [2010-06-14 17:14:37 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGT1796.html [2010-06-13 12:16:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEFO748.html [2010-06-13 12:16:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempjWg748.html [2010-06-12 13:13:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZj3212.html [2010-06-12 13:13:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZh3212.html [2010-06-12 07:54:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkE2716.html [2010-06-12 07:54:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVs2716.html [2010-06-11 14:55:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPWG204.html [2010-06-11 14:55:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkYH204.html [2010-06-11 14:07:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwci432.html [2010-06-11 14:07:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaxY432.html [2010-06-10 20:01:49 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBU1092.html [2010-06-10 20:01:49 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEX1092.html [2010-06-10 07:09:58 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBv3032.html [2010-06-10 07:09:58 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWt3032.html [2010-06-09 13:07:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYAt164.html [2010-06-09 13:07:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemphGo164.html [2010-06-08 19:29:30 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFO2572.html [2010-06-08 19:29:30 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZk2572.html [2010-06-08 06:47:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPi2472.html [2010-06-08 06:47:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempqw2472.html [2010-06-07 21:13:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempLb3456.html [2010-06-07 21:13:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOU3456.html [2010-06-07 19:24:06 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzP1836.html [2010-06-07 19:24:06 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRt1836.html [2010-06-07 07:28:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUX2192.html [2010-06-07 07:28:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnD2192.html [2010-06-06 18:47:18 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temptr3736.html [2010-06-06 18:47:18 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOe3736.html [2010-06-06 16:08:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEs3280.html [2010-06-06 16:08:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRw3280.html [2010-06-06 12:17:36 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNe1492.html [2010-06-06 12:17:36 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVg1492.html [2010-06-02 21:02:01 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsA2508.html [2010-06-02 21:02:01 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempvq2508.html [2010-06-02 20:20:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempjN2888.html [2010-06-02 20:20:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templw2888.html [2010-06-01 18:22:13 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempal3840.html [2010-06-01 18:22:13 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempez3840.html [2010-06-01 13:35:49 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkR1552.html [2010-06-01 13:35:49 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYo1552.html [2010-06-01 07:09:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempeH2980.html [2010-06-01 07:09:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJq2980.html [2010-05-31 19:19:38 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXa3080.html [2010-05-31 19:19:38 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempgL3080.html [2010-05-30 13:50:02 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGP2660.html [2010-05-30 13:50:02 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIf2660.html [2010-05-27 19:19:29 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempff3532.html [2010-05-27 19:19:29 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempkJ3532.html [2010-05-27 09:32:16 | 000,024,576 | ---- | C] () -- C:\Users\Przemek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-27 07:32:32 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHx1748.html [2010-05-27 07:32:32 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfi1748.html [2010-05-26 06:29:14 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempfY2596.html [2010-05-26 06:29:14 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZt2596.html [2010-05-25 13:14:10 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBZ3708.html [2010-05-25 13:14:10 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempgg3708.html [2010-05-23 15:07:36 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temprl1924.html [2010-05-23 15:07:36 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprH1924.html [2010-05-22 12:26:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempvu3564.html [2010-05-22 12:26:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQm3564.html [2010-05-21 13:17:10 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempas1520.html [2010-05-21 13:17:10 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempxz1520.html [2010-05-20 19:00:31 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuD2884.html [2010-05-20 19:00:31 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwz2884.html [2010-05-18 18:44:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRY1084.html [2010-05-18 18:44:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempfG1084.html [2010-05-18 16:49:12 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWp2372.html [2010-05-18 16:49:12 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOH2372.html [2010-05-18 13:44:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPR1232.html [2010-05-18 13:44:43 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprA1232.html [2010-05-18 07:04:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVe3712.html [2010-05-18 07:04:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempvJ3712.html [2010-05-16 13:56:09 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuI2352.html [2010-05-16 13:56:09 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempjQ2352.html [2010-05-15 19:09:59 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDO2512.html [2010-05-15 19:09:59 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempis2512.html [2010-05-15 13:19:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temptgw760.html [2010-05-15 13:19:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemptIK760.html [2010-05-15 13:15:01 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOq1260.html [2010-05-15 13:15:01 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temptd1260.html [2010-05-14 18:34:53 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZm1744.html [2010-05-14 18:34:53 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJD1744.html [2010-05-14 15:29:45 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnX2108.html [2010-05-14 15:29:45 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempbS2108.html [2010-05-13 14:37:52 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsL2600.html [2010-05-13 14:37:52 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBo2600.html [2010-05-11 13:52:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzK1120.html [2010-05-11 13:52:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzO1120.html [2010-05-11 12:59:05 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAol920.html [2010-05-11 12:59:05 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempuxI920.html [2010-05-11 07:11:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOS3412.html [2010-05-11 07:11:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFs3412.html [2010-05-10 17:04:30 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUJ3984.html [2010-05-10 17:04:30 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEQ3984.html [2010-05-09 14:08:44 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempme1324.html [2010-05-09 14:08:44 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templz1324.html [2010-05-07 18:11:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGe4400.html [2010-05-07 18:11:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempmH4400.html [2010-05-07 16:05:13 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYH3824.html [2010-05-07 16:05:13 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempgt3824.html [2010-05-06 16:26:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTt2756.html [2010-05-06 16:26:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEj2756.html [2010-05-06 07:36:31 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBW1560.html [2010-05-06 07:36:31 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOb1560.html [2010-05-05 20:47:36 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempByN376.html [2010-05-05 20:47:36 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempLzu376.html [2010-05-04 14:44:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDZ1088.html [2010-05-04 14:44:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjm1088.html [2010-05-02 15:32:05 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUH2616.html [2010-05-02 15:32:05 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNC2616.html [2010-05-02 01:31:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempgM3972.html [2010-05-02 01:31:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempno3972.html [2010-04-30 08:15:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwk3028.html [2010-04-30 08:15:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempyo3028.html [2010-04-29 20:57:51 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOK2160.html [2010-04-29 20:57:51 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempzW2160.html [2010-04-29 13:01:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempbR4048.html [2010-04-29 13:01:15 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAr4048.html [2010-04-28 15:42:23 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempwi2236.html [2010-04-28 15:42:23 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIH2236.html [2010-04-28 13:21:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTN2156.html [2010-04-28 13:21:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfd2156.html [2010-04-28 11:29:14 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBg3948.html [2010-04-28 11:29:14 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temppq3948.html [2010-04-28 06:47:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempyq2636.html [2010-04-28 06:47:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprW2636.html [2010-04-27 19:02:00 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEs2388.html [2010-04-27 19:02:00 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempcB2388.html [2010-04-27 14:57:59 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempgF3000.html [2010-04-27 14:57:59 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempyY3000.html [2010-04-27 10:35:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKv4060.html [2010-04-27 10:35:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempSK4060.html [2010-04-26 15:34:41 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKO1616.html [2010-04-26 15:34:41 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprQ1616.html [2010-04-25 17:00:41 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXk2020.html [2010-04-25 17:00:41 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempch2020.html [2010-04-22 15:57:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAr3228.html [2010-04-22 15:57:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemplJ3228.html [2010-04-22 07:32:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJc1564.html [2010-04-22 07:32:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPj1564.html [2010-04-21 16:25:16 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTG2944.html [2010-04-21 16:25:16 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdz2944.html [2010-04-20 15:04:54 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFCF532.html [2010-04-20 15:04:54 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaHT532.html [2010-04-19 17:29:24 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPC2156.html [2010-04-19 17:29:24 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiH2156.html [2010-04-18 12:48:45 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempUa3960.html [2010-04-18 12:48:45 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIA3960.html [2010-04-15 07:55:27 | 000,000,095 | ---- | C] () -- C:\Users\Przemek\AppData\Local\fusioncache.dat [2010-04-14 13:17:58 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJP2392.html [2010-04-14 13:17:58 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTM2392.html [2010-04-14 06:42:01 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjw1836.html [2010-04-14 06:42:01 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwH1836.html [2010-04-13 15:52:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempen3692.html [2010-04-13 15:52:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempjv3692.html [2010-04-13 14:57:20 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdq3976.html [2010-04-13 14:57:20 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempaf3976.html [2010-04-11 18:29:11 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempJD3840.html [2010-04-11 18:29:11 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNM3840.html [2010-04-10 14:14:39 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempYR3972.html [2010-04-10 14:14:39 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempnW3972.html [2010-04-10 11:28:47 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGc3368.html [2010-04-10 11:28:47 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfe3368.html [2010-04-09 17:06:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempjQ3864.html [2010-04-09 17:06:28 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXn3864.html [2010-04-09 16:04:43 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKB1348.html [2010-04-09 16:04:43 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempbk1348.html [2010-04-08 09:09:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBS2616.html [2010-04-08 09:09:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Templw2616.html [2010-04-08 07:40:03 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempOL1116.html [2010-04-08 07:40:03 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temphi1116.html [2010-04-06 07:12:41 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKx2104.html [2010-04-06 07:12:41 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempqF2104.html [2010-04-05 14:08:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempCC2972.html [2010-04-05 14:08:28 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBH2972.html [2010-04-05 08:50:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempgr2252.html [2010-04-05 08:50:48 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXw2252.html [2010-04-03 19:03:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temprj2800.html [2010-04-03 19:03:26 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemprM2800.html [2010-04-02 12:41:14 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempru3780.html [2010-04-02 12:41:14 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempfg3780.html [2010-04-01 12:52:56 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temppd2144.html [2010-04-01 12:52:56 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEp2144.html [2010-04-01 10:08:37 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRw3996.html [2010-04-01 10:08:37 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdw3996.html [2010-04-01 07:12:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempbd3952.html [2010-04-01 07:12:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwP3952.html [2010-03-28 17:20:33 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwZ2344.html [2010-03-28 17:20:33 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempbd2344.html [2010-03-28 13:03:22 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXfz768.html [2010-03-28 13:03:22 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempQfL768.html [2010-03-27 17:26:46 | 000,000,027 | ---- | C] () -- C:\Windows\BRPP2KA.INI [2010-03-27 17:26:45 | 000,000,404 | ---- | C] () -- C:\Windows\BRWMARK.INI [2010-03-26 13:47:05 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFu1372.html [2010-03-26 13:47:05 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempxe1372.html [2010-03-25 19:36:39 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempKl1204.html [2010-03-25 19:36:39 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVA1204.html [2010-03-25 17:57:21 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempxL2920.html [2010-03-25 17:57:21 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempcS2920.html [2010-03-25 08:24:34 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEU3068.html [2010-03-25 08:24:34 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempcP3068.html [2010-03-23 15:52:48 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempPE3300.html [2010-03-23 15:52:48 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempMB3300.html [2010-03-22 18:48:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempMB1876.html [2010-03-22 18:48:28 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHt1876.html [2010-03-19 10:43:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaM2392.html [2010-03-19 10:43:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXn2392.html [2010-03-18 11:52:32 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempoa3856.html [2010-03-18 11:52:32 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemplM3856.html [2010-03-18 07:10:25 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHK3116.html [2010-03-18 07:10:25 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempSj3116.html [2010-03-16 19:32:50 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempGh3632.html [2010-03-16 19:32:50 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempsY3632.html [2010-03-16 08:13:18 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempAU1484.html [2010-03-16 08:13:18 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiZ1484.html [2010-03-15 17:03:17 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempFy3904.html [2010-03-15 17:03:17 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHB3904.html [2010-03-14 19:06:35 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempij2644.html [2010-03-14 19:06:35 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdi2644.html [2010-03-14 17:08:22 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll [2010-03-14 17:08:22 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys [2010-03-14 13:14:08 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempwE2448.html [2010-03-14 13:14:08 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempTW2448.html [2010-03-13 19:38:38 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEY2364.html [2010-03-13 19:38:38 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempEG2364.html [2010-03-13 18:02:04 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdg2248.html [2010-03-13 18:02:04 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempDV2248.html [2010-03-13 15:08:26 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Temphs2416.html [2010-03-13 15:08:26 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempra2416.html [2010-03-13 15:04:19 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRd2436.html [2010-03-13 15:04:19 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRa2436.html [2010-03-13 14:56:55 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TemptM2468.html [2010-03-13 14:56:55 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempdr2468.html [2010-03-13 14:32:58 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempWa2420.html [2010-03-13 14:32:58 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempVo2420.html [2010-03-12 18:55:36 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempZl2576.html [2010-03-12 18:55:36 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempHI2576.html [2010-03-12 17:26:05 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempvw2388.html [2010-03-12 17:26:05 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempIJ2388.html [2010-03-12 17:23:57 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\Tempvn2404.html [2010-03-12 17:23:57 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempXM2404.html [2010-03-12 17:20:56 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2010-03-12 17:05:59 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2010-03-12 16:56:28 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempNQb364.html [2010-03-12 16:56:28 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempaXs364.html [2010-03-12 16:41:07 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempBH2416.html [2010-03-12 16:41:07 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempiF2416.html [2010-03-12 07:34:44 | 000,002,432 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempeH1920.html [2010-03-12 07:34:44 | 000,002,089 | ---- | C] () -- C:\Users\Przemek\AppData\Local\TempRe1920.html [2010-03-11 21:29:03 | 000,073,728 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll [2010-03-11 21:22:55 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini [2009-07-14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009-07-14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2007-10-25 17:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys [color=#E56717]========== LOP Check ==========[/color] [2010-08-04 12:26:18 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\AnvSoft [2010-03-14 15:11:55 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Ashampoo [2011-01-31 09:42:36 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\BitDefender [2010-03-12 08:03:28 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\COWON [2010-03-12 19:01:15 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\DAEMON Tools Lite [2010-03-12 08:16:14 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Gadu-Gadu 10 [2010-03-12 16:47:52 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\HEXelon [2010-10-22 17:05:57 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\ipla [2010-03-17 16:41:16 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\maxup [2010-04-08 19:39:56 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\MP3Rocket [2010-08-09 13:22:11 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Nokia [2010-11-13 19:30:59 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\OpenCandy [2011-02-10 12:07:21 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Opera [2010-08-09 13:17:43 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\PC Suite [2010-03-14 17:08:14 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Samsung [2010-10-01 14:50:03 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Softland [2010-07-19 17:34:02 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\STOIK [2010-05-11 17:30:32 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Thunderbird [2011-01-09 11:16:00 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Ubisoft [2011-01-01 14:55:24 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\uTorrent [2010-03-14 15:30:15 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Vivox [2010-06-07 13:37:05 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\VULCAN [2011-01-23 15:55:05 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Watchtower [2010-03-20 19:33:44 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\COWON [2010-08-31 17:50:29 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\PC Suite [2010-11-15 18:38:32 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\Softland [2010-05-11 19:32:20 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\Thunderbird [2010-11-15 17:36:11 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\uTorrent [2010-06-07 19:22:48 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\VULCAN [2011-01-25 21:42:14 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\Watchtower [2010-12-29 12:22:57 | 000,032,542 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2011-02-10 13:14:03 | 000,000,250 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2011-02-10 13:29:04 | 000,000,294 | -H-- | M] () -- C:\Windows\Tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2002-08-29 19:44:48 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\advapi32.dll [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat [2009-07-14 02:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr [2010-03-12 11:56:00 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK [2009-06-10 22:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys [2010-06-08 19:48:41 | 000,597,504 | ---- | M] (Microsoft Corporation) -- C:\crypt32.dll [2010-03-11 21:29:27 | 000,000,010 | ---- | M] () -- C:\csb.log [2010-03-12 17:21:30 | 000,364,281 | RHS- | M] () -- C:\FPKCQ [2011-02-10 10:57:36 | 1609,424,896 | -HS- | M] () -- C:\hiberfil.sys [2010-03-11 21:29:15 | 000,000,190 | ---- | M] () -- C:\Install.log [2010-09-26 17:51:48 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-09-26 17:51:48 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2011-02-10 10:57:38 | 2145,902,592 | -HS- | M] () -- C:\pagefile.sys [2010-03-11 21:26:34 | 000,001,841 | ---- | M] () -- C:\RHDSetup.log [2011-02-10 13:31:27 | 000,082,478 | ---- | M] () -- C:\service.log [2010-06-16 21:22:53 | 000,000,000 | ---- | M] () -- C:\udugi.log [2010-03-12 17:21:30 | 000,000,020 | RHS- | M] () -- C:\winx.ld [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2009-07-14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys [2009-07-14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_65848c2d7375a720\AGP440.sys [2009-07-14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2009-07-14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys [2009-07-14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_f64b9c35a3a5be81\atapi.sys [2009-07-14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2009-07-14 00:45:01 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=505506526A9D467307B3C393DEDAF858 -- C:\Windows\System32\drivers\beep.sys [2009-07-14 00:45:01 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=505506526A9D467307B3C393DEDAF858 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_c3f6f77668f0ddcc\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2009-07-14 00:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\System32\drivers\cdrom.sys [2009-07-14 00:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_db87d184bc84f910\cdrom.sys [2009-07-14 00:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_5f7fb206051affbb\cdrom.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2009-07-14 02:20:44 | 000,710,720 | ---- | M] (Microsoft Corporation) MD5=23759D175A0A9BAAF04D05047BC135A8 -- C:\Windows\System32\drivers\ndis.sys [2009-07-14 02:20:44 | 000,710,720 | ---- | M] (Microsoft Corporation) MD5=23759D175A0A9BAAF04D05047BC135A8 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_a79d81ea7d62a289\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2009-10-28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\System32\winlogon.exe [2009-10-28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe [2009-10-28 06:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe [2009-07-14 02:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:2C595FF3 < End of report > [/log] [log]OTL Extras logfile created on: 2011-02-10 13:27:06 - Run 4 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Przemek\Desktop\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 50,00% Memory free 4,00 Gb Paging File | 2,00 Gb Available in Paging File | 62,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 29,30 Gb Total Space | 3,25 Gb Free Space | 11,08% Space Free | Partition Type: NTFS Drive D: | 48,83 Gb Total Space | 13,02 Gb Free Space | 26,66% Space Free | Partition Type: NTFS Drive E: | 219,96 Gb Total Space | 200,27 Gb Free Space | 91,05% Space Free | Partition Type: NTFS Computer Name: PRZEMEK-PC | User Name: Przemek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [HKEY_USERS\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "E:\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "E:\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- E:\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "E:\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "E:\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "E:\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4 "{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4 "{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4 "{089DD780-DB3F-4CDB-A0C2-111360247298}" = PC Connectivity Solution "{098727E1-775A-4450-B573-3F441F1CA243}" = kuler "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4 "{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup "{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4 "{121C822F-7DBA-4A54-AC12-0EE12B273495}" = ESET NOD32 Antivirus "{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4 "{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB "{171E6C1E-B5FC-11DF-B115-005056C00008}" = Google Earth Plug-in "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}" = Nokia PC Suite "{26A24AE4-039D-4CA4-87B4-2F83216019FF}" = Java(TM) 6 Update 20 "{3248F0A8-6813-11D6-A77B-00B0D0160010}" = Java(TM) SE Runtime Environment 6 Update 1 "{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4 "{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4 "{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin "{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform "{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English) "{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4 "{56B4002F-671C-49F4-984C-C760FE3806B5}" = Microsoft SQL Server VSS Writer "{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant "{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4 "{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support "{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6A05FEDF-662E-46BF-8A25-010E3F1C9C69}" = Windows Live UX Platform Language Pack "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{72736F5F-520D-472A-88CC-7B02872FD34E}" = ATI Catalyst Registration "{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver "{7ED169D4-5053-4166-93DF-53B12AE6C539}" = Energy Saver Advance B9.0730.1 "{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4 "{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4 "{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8CE08C3C-8FF4-45D9-925E-4F3CE2D7FA7D}" = Adobe Setup "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{904CCF62-818D-4675-BC76-D37EB399F917}" = Windows Mobile Device Center "{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4 "{934528B2-09B3-C6E5-288A-4E554E6DF2B9}" = ATI Catalyst Install Manager "{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}" = Brother MFL-Pro Suite DCP-150C "{A6CD8FC5-9CB0-4F48-BBB7-2C68FD4A3153}" = Nokia Firmware RM-133 ME_EMEA "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA7B0DE4-E3CA-443F-B1CF-418431664C63}" = Windows Live Movie Maker "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.1 - Polish "{B0F9497C-52B4-4686-8E73-74D866BBDF59}" = Microsoft SQL Server 2005 (SQLEXPRESS) "{B29AD377-CC12-490A-A480-1452337C618D}" = Connect "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4 "{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module "{BD68F46D-8A82-4664-8E68-F87C55BDEFD4}" = Microsoft SQL Server Native Client "{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2 "{D385C907-19E0-4CF7-82C1-A597B8558853}" = Watchtower Library 2010 - wydanie polskie "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}" = COWON Media Center - jetAudio Basic VX "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager "{E39C185F-1240-4BA7-A03B-4FD99805D63E}" = Galeria fotografii usługi Windows Live "{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4 "{E580DFEA-3F1D-4B56-9115-984217032FF5}" = Windows Live Sync "{EBB794ED-D282-4334-92FB-254481EFF514}" = Pro Evolution Soccer 6 "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.01.110 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "{F1FDAA01-988C-423F-AC12-0D8F333943FD}" = Nokia Connectivity Cable Driver "{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4 "{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4 "{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "34EA302E7F4CBD17A19E33BBCB72363234956D7E" = Windows Driver Package - Nokia Modem (06/09/2010 4.5) "504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe_2a31ae7a5c43ff52d8577782dd34e04" = Adobe Illustrator CS4 "Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4 "Any Video Converter_is1" = Any Video Converter 3.0.7 "Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010 "Creative VF0530" = Creative Live! Cam Chat IM (VF0530) (1.02.02.00) "CSINYUbisoft" = CSI NY "EEEE705096F837B7907659F100C9FE6DA001970F" = Windows Driver Package - Nokia Modem (06/09/2010 7.01.0.7) "Enable S3 for USB Device" = Enable S3 for USB Device "ENTERPRISE" = Microsoft Office Enterprise 2007 "Gadu-Gadu 10" = Gadu-Gadu 10 "InstallShield_{EBB794ED-D282-4334-92FB-254481EFF514}" = Pro Evolution Soccer 6 "InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft SQL Server 2005" = Microsoft SQL Server 2005 "Mozilla Firefox 4.0b11 (x86 pl)" = Mozilla Firefox 4.0b11 (x86 pl) "Mozilla Thunderbird (3.1.7)" = Mozilla Thunderbird (3.1.7) "Nokia PC Suite" = Nokia PC Suite "OJOsoft Audio Converter_is1" = OJOsoft Audio Converter "Opera 11.01.1190" = Opera 11.01 "Picasa 3" = Picasa 3 "RMVB Player_is1" = RMVB Player 1.0 "SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software "SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set "Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software "Samsung Mobile phone USB driver Drive" = Samsung Mobile phone USB driver Drive Software "SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software "SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software "SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software "TC UP" = Total Commander Ultima Prime 5.0.0.0 "TopStyle Lite (Version 3.0)" = TopStyle Lite (Version 3) "TSLite3_is1" = TopStyle Lite (Version 3) "Turbo Photo_is1" = Turbo Photo 6.4 "uTorrent" = µTorrent "WebSite PRO_is1" = WebSite PRO 4.3 "Winamp" = Winamp "WinLiveSuite" = Windows Live Essentials "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-02-08 05:33:09 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/08 10:33:09.078]: [00006068]: GetDeviceList Failed! pStiInfo = 0x0.. Error - 2011-02-08 05:33:09 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/08 10:33:09.079]: [00006068]: ##### Fatal ERROR!! Create STI-device failed! ##### Error - 2011-02-08 05:33:09 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/08 10:33:09.079]: [00006068]: Initialize TwdsMain Class failed! Error - 2011-02-09 05:50:02 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/09 10:50:02.733]: [00001568]: GetDeviceList Failed! pStiInfo = 0x0.. Error - 2011-02-09 05:50:02 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/09 10:50:02.745]: [00001568]: ##### Fatal ERROR!! Create STI-device failed! ##### Error - 2011-02-09 05:50:02 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/09 10:50:02.745]: [00001568]: Initialize TwdsMain Class failed! Error - 2011-02-09 07:57:12 | Computer Name = Przemek-PC | Source = Application Hang | ID = 1002 Description = Program OTL.exe w wersji 3.2.20.6 zatrzymal interakcje z systemem Windows i zostal zamkniety. Aby zobaczyc, czy jest dostepnych wiecej informacji dotyczacych tego problemu, sprawdz historie problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 5a8 Godzina rozpoczecia: 01cbc84f09853c8a Godzina zakonczenia: 7 Sciezka aplikacji: C:\Users\Przemek\Desktop\Downloads\OTL.exe Identyfikator raportu: Error - 2011-02-10 05:04:09 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/10 10:04:09.246]: [00000724]: GetDeviceList Failed! pStiInfo = 0x0.. Error - 2011-02-10 05:04:09 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/10 10:04:09.247]: [00000724]: ##### Fatal ERROR!! Create STI-device failed! ##### Error - 2011-02-10 05:04:09 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = TWN BrtTWN: [2011/02/10 10:04:09.249]: [00000724]: Initialize TwdsMain Class failed! [ OSession Events ] Error - 2011-01-30 09:41:49 | Computer Name = Przemek-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 138 seconds with 120 seconds of active time. This session ended with a crash. [ System Events ] Error - 2011-02-09 07:57:43 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7024 Description = Usluga Apache2.2 zakonczyla dzialanie; wystapil specyficzny dla niej blad %%1. Error - 2011-02-10 04:51:44 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi avast! iAVS4 Control Service z powodu nastepujacego bledu: %%2 Error - 2011-02-10 04:51:45 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7009 Description = Uplynal limit czasu (30000 ms) podczas oczekiwania na polaczenie sie z usluga Eset Trial Reset. Error - 2011-02-10 04:51:45 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi Eset Trial Reset z powodu nastepujacego bledu: %%1053 Error - 2011-02-10 04:52:15 | Computer Name = Przemek-PC | Source = Microsoft-Windows-Eventlog | ID = 23 Description = Usluga rejestrowania zdarzen napotkala blad (zasób=5) podczas inicjowania zasobów rejestrowana dla kanalu Microsoft-Windows-Resource-Exhaustion-Detector/Operational. Error - 2011-02-10 05:27:24 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7024 Description = Usluga Apache2.2 zakonczyla dzialanie; wystapil specyficzny dla niej blad %%1. Error - 2011-02-10 05:57:48 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi avast! iAVS4 Control Service z powodu nastepujacego bledu: %%2 Error - 2011-02-10 05:57:49 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7009 Description = Uplynal limit czasu (30000 ms) podczas oczekiwania na polaczenie sie z usluga Eset Trial Reset. Error - 2011-02-10 05:57:49 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi Eset Trial Reset z powodu nastepujacego bledu: %%1053 Error - 2011-02-10 05:58:16 | Computer Name = Przemek-PC | Source = Microsoft-Windows-Eventlog | ID = 23 Description = Usluga rejestrowania zdarzen napotkala blad (zasób=5) podczas inicjowania zasobów rejestrowana dla kanalu Microsoft-Windows-Resource-Exhaustion-Detector/Operational. < End of report > [/log] RSIT [log]Logfile of random's system information tool 1.08 (written by random/random) Run by Przemek at 2011-02-10 13:27:20 Microsoft Windows 7 Ultimate System drive C: has 3 GB (11%) free of 30 GB Total RAM: 2046 MB (49% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:27:54, on 2011-02-10 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16700) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskhost.exe C:\Windows\Explorer.EXE C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Windows\V0530Mon.exe C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe C:\Windows\WindowsMobile\wmdc.exe C:\Program Files\Brother\ControlCenter3\brccMCtl.exe E:\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe E:\Winamp\winamp.exe E:\Gadu-Gadu 10\gg.exe C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe C:\Users\Przemek\Desktop\Downloads\OTL.exe C:\Users\Przemek\Desktop\Downloads\RSIT.exe C:\Program Files\trend micro\Przemek.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Java\bin\jp2ssv.dll O2 - BHO: IEPluginBHO - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.2.dll (file missing) O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe" O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe O4 - HKLM\..\Run: [V0530Mon.exe] C:\Windows\V0530Mon.exe O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [GrooveMonitor] "E:\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA LOKALNA') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA SIECIOWA') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA SIECIOWA') O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://E:\MICROS~1\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://E:\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Wyslij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Wyslij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - E:\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Apache2.2 - Apache Software Foundation - E:\Xampp\xampp\apache\bin\httpd.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - E:\Avast\aswUpdSv.exe (file missing) O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe O23 - Service: Usluga Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: MySQL - MySQL AB - E:\Xampp\xampp\mysql\bin\mysqld.exe O23 - Service: NMSAccess - Unknown owner - E:\Blaze Media Pro\NMSAccess32.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- End of file - 7116 bytes ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job C:\Windows\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - E:\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - E:\Java\bin\jp2ssv.dll [2010-05-27 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D}] IEPluginBHO Class - C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.2.dll [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2009-06-14 307200] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-06-25 7547424] "NPSStartup"= [] "V0530Mon.exe"=C:\Windows\V0530Mon.exe [2008-02-18 28672] "BrMfcWnd"=C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [2009-05-26 1159168] "ControlCenter3"=C:\Program Files\Brother\ControlCenter3\brctrcen.exe [2008-12-24 114688] "Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072] "GrooveMonitor"=E:\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072] "egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-11-04 2219184] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "AdobeBridge"= [] "Sony Ericsson PC Companion"=C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-05 424448] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] E:\Adobe Acrobat Reader\Reader\Reader_sl.exe [2010-09-23 35760] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStartNPSAgent] E:\Samsung PcStudio\NPSAgent.exe [2009-04-02 102400] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] E:\Daemon Tools\DTLite.exe [2009-10-30 369200] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu 10] E:\Gadu-Gadu 10\gg.exe [2010-10-07 12661344] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!] C:\Program Files\ipla\ipla.exe /autorun [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] C:\Windows\system32\NeroCheck.exe [2001-07-09 155648] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray] E:\Nokia PC Suite\Nokia PC Suite 7\PCSuite.exe [2010-05-14 1479680] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Program Files\Skype\Phone\Skype.exe [2010-04-20 26192680] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk] C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Przemek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^IMVU.lnk] C:\Users\Przemek\AppData\Roaming\IMVUCL~1\IMVUQU~1.EXE --startup [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=E:\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=0 "ConsentPromptBehaviorUser"=3 "EnableLUA"=0 "EnableUIADesktopToggle"=0 "PromptOnSecureDesktop"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 months====== 2011-02-10 12:28:25 ----D---- C:\Program Files\Mozilla Firefox 4.0 Beta 11 2011-02-10 12:07:21 ----D---- C:\Users\Przemek\AppData\Roaming\Opera 2011-02-10 12:07:17 ----D---- C:\Program Files\Opera 2011-02-02 15:11:13 ----D---- C:\ProgramData\Sony Ericsson 2011-02-02 15:11:13 ----D---- C:\Program Files\Sony Ericsson 2011-01-31 11:53:09 ----D---- C:\rsit 2011-01-31 11:53:09 ----D---- C:\Program Files\trend micro 2011-01-31 10:21:53 ----D---- C:\Program Files\ESET 2011-01-31 09:42:36 ----D---- C:\Users\Przemek\AppData\Roaming\BitDefender 2011-01-31 09:42:18 ----D---- C:\ProgramData\BitDefender 2011-01-31 09:41:20 ----D---- C:\Program Files\Common Files\BitDefender 2011-01-30 23:30:34 ----A---- C:\Windows\gdrv.sys 2011-01-30 23:03:31 ----ASH---- C:\pagefile.sys 2011-01-12 19:12:46 ----A---- C:\Windows\system32\d3d10warp.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\XpsPrint.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\FntCache.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\DWrite.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\d2d1.dll 2011-01-12 19:12:44 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2011-01-12 19:12:44 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2011-01-12 19:12:44 ----A---- C:\Windows\system32\d3d10_1core.dll 2011-01-12 19:12:44 ----A---- C:\Windows\system32\cdd.dll 2011-01-12 19:12:43 ----A---- C:\Windows\system32\XpsRasterService.dll 2011-01-12 19:12:43 ----A---- C:\Windows\system32\ExplorerFrame.dll 2011-01-12 19:12:43 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2011-01-12 19:12:43 ----A---- C:\Windows\system32\d3d10_1.dll 2011-01-12 19:09:07 ----A---- C:\Windows\system32\odbc32.dll ======List of files/folders modified in the last 1 months====== 2011-02-10 13:27:29 ----D---- C:\Windows\Temp 2011-02-10 12:32:40 ----RD---- C:\Program Files 2011-02-10 11:08:57 ----D---- C:\Windows\system32\config 2011-02-10 11:03:57 ----SHD---- C:\Windows\Installer 2011-02-10 10:05:31 ----D---- C:\Windows\System32 2011-02-10 10:05:30 ----D---- C:\Windows\inf 2011-02-10 10:05:30 ----A---- C:\Windows\system32\PerfStringBackup.INI 2011-02-10 09:58:33 ----D---- C:\Windows\system32\catroot 2011-02-10 09:58:27 ----D---- C:\Windows\system32\catroot2 2011-02-10 09:58:01 ----D---- C:\Windows\winsxs 2011-02-09 10:50:39 ----SHD---- C:\System Volume Information 2011-02-02 17:11:20 ----N---- C:\Windows\system32\MpSigStub.exe 2011-02-02 15:22:19 ----D---- C:\Windows\system32\DriverStore 2011-02-02 15:22:08 ----HD---- C:\Program Files\InstallShield Installation Information 2011-02-02 15:12:31 ----D---- C:\Windows\system32\drivers 2011-02-02 15:11:13 ----HD---- C:\ProgramData 2011-02-02 13:02:26 ----D---- C:\Windows 2011-02-02 13:02:08 ----A---- C:\Windows\unins000.exe 2011-02-02 12:02:22 ----D---- C:\Windows\system32\Tasks 2011-01-31 09:49:07 ----D---- C:\Windows\system32\drivers\etc 2011-01-31 09:41:20 ----D---- C:\Program Files\Common Files 2011-01-30 23:26:22 ----RD---- C:\Program Files\Skype 2011-01-30 23:23:42 ----A---- C:\Windows\GSetup.ini 2011-01-30 23:15:17 ----D---- C:\Program Files\GIGABYTE 2011-01-30 22:39:43 ----SD---- C:\Users\Przemek\AppData\Roaming\Microsoft 2011-01-23 15:55:05 ----D---- C:\Users\Przemek\AppData\Roaming\Watchtower 2011-01-18 16:00:53 ----A---- C:\Windows\NeroDigital.ini 2011-01-12 20:03:30 ----A---- C:\Windows\system32\MRT.exe 2011-01-12 20:03:19 ----D---- C:\ProgramData\Microsoft Help ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-02-23 43872] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-03-12 691696] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584] R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-07-29 115008] R1 VD_FileDisk;VD_FileDisk; C:\Windows\system32\drivers\VD_FileDisk.sys [2006-01-13 15872] R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-09-03 137144] R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-07-29 96920] R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 4194816] R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-03-31 36608] R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-02-10 17488] R3 GearAspiWDM;GEARAspiWDM; C:\Windows\System32\drivers\GEARAspiWDM.sys [2008-02-22 16168] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-06-25 2375776] R3 ip100Avista;ASUS NX1001 Network Adapter NT Driver; C:\Windows\system32\DRIVERS\ipfnd51.sys [2010-03-11 29696] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392] S3 a8zoskb9;a8zoskb9; C:\Windows\system32\drivers\a8zoskb9.sys [] S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888] S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2010-02-26 18176] S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2010-02-26 22528] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816] S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120] S3 RimUsb;BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb.sys [2007-05-14 22656] S3 s1039bus;Sony Ericsson Device 1039 driver (WDM); C:\Windows\system32\DRIVERS\s1039bus.sys [2010-03-01 98672] S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1039mdfl.sys [2010-03-01 14960] S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1039mdm.sys [2010-03-01 124016] S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1039mgmt.sys [2010-03-01 117872] S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1039nd5.sys [2010-03-01 25456] S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1039obex.sys [2010-03-01 113904] S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1039unic.sys [2010-03-01 123504] S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304] S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-03-20 90112] S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-03-20 14976] S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-03-20 121856] S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224] S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192] S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840] S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648] S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192] S3 V0530Dev;Creative Camera VF0530 Driver; C:\Windows\system32\DRIVERS\V0530Vid.sys [2009-12-14 273728] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736] S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824] S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920] S3 WinUsb;WinUsb Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Apache2.2;Apache2.2; E:\Xampp\xampp\apache\bin\httpd.exe [2009-12-19 29416] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-04 810144] R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2009-03-31 233472] R2 GEST Service;GEST Service for program management.; C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe [2009-07-30 68136] R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2009-05-27 29262680] R2 MySQL;MySQL; E:\Xampp\xampp\mysql\bin\mysqld.exe [2009-12-19 6095504] R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 20992] R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-24 87904] R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 20992] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464] S2 .EsetTrialReset;Eset Trial Reset; C:\Windows\system32\regedt32.exe [2009-07-14 9216] S2 aswUpdSv;avast! iAVS4 Control Service; E:\Avast\aswUpdSv.exe [] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 gupdate;Usluga Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-05-14 136176] S2 NMSAccess;NMSAccess; E:\Blaze Media Pro\NMSAccess32.exe [] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-06-10 31064] S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-11-04 33584] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-05-06 655624] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-04 136120] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; E:\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888] S3 nosGetPlusHelper;getPlus(R) Helper 3004; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936] S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1343400] S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408] S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968] -----------------EOF----------------- [/log]
Tomek01 komentarz 10 lutego 2011 komentarz 10 lutego 2011 W OTL, w oknie Custom scan/fixes wklej: [code]:Files C:\Users\Przemek\AppData\Local\Temp*.html :Commands [emptytemp][/code] Klikasz run fix, komputer uruchamia się ponownie. Wrzuć log z usuwania oraz nowe logi: OTL i RSIT
przemek980 komentarz 10 lutego 2011 Autor komentarz 10 lutego 2011 A co to jest RunFix, bo mam OTL'a po polsku. Nie chciałbym kliknąć w coś na ślepo
przemek980 komentarz 11 lutego 2011 Autor komentarz 11 lutego 2011 Log z usuwania: [log] All processes killed ========== FILES ========== C:\Users\Przemek\AppData\Local\TempAa1212.html moved successfully. C:\Users\Przemek\AppData\Local\TempAd3908.html moved successfully. C:\Users\Przemek\AppData\Local\Tempaf3976.html moved successfully. C:\Users\Przemek\AppData\Local\TempAG2860.html moved successfully. C:\Users\Przemek\AppData\Local\TempAg3600.html moved successfully. C:\Users\Przemek\AppData\Local\TempaHT532.html moved successfully. C:\Users\Przemek\AppData\Local\TempAj3844.html moved successfully. C:\Users\Przemek\AppData\Local\TempAK4436.html moved successfully. C:\Users\Przemek\AppData\Local\Tempal3840.html moved successfully. C:\Users\Przemek\AppData\Local\TempaM2392.html moved successfully. C:\Users\Przemek\AppData\Local\TempaM2904.html moved successfully. C:\Users\Przemek\AppData\Local\Tempam4292.html moved successfully. C:\Users\Przemek\AppData\Local\TempaM5252.html moved successfully. C:\Users\Przemek\AppData\Local\TempAol920.html moved successfully. C:\Users\Przemek\AppData\Local\TempAr3228.html moved successfully. C:\Users\Przemek\AppData\Local\TempAr4048.html moved successfully. C:\Users\Przemek\AppData\Local\Tempas1520.html moved successfully. C:\Users\Przemek\AppData\Local\TempAU1484.html moved successfully. C:\Users\Przemek\AppData\Local\TempaW3140.html moved successfully. C:\Users\Przemek\AppData\Local\TempawK788.html moved successfully. C:\Users\Przemek\AppData\Local\TempAx3032.html moved successfully. C:\Users\Przemek\AppData\Local\TempaXs364.html moved successfully. C:\Users\Przemek\AppData\Local\TempaxY432.html moved successfully. C:\Users\Przemek\AppData\Local\TempaY3508.html moved successfully. C:\Users\Przemek\AppData\Local\TempAy5596.html moved successfully. C:\Users\Przemek\AppData\Local\TempaZ4980.html moved successfully. C:\Users\Przemek\AppData\Local\Tempbd2344.html moved successfully. C:\Users\Przemek\AppData\Local\Tempbd3952.html moved successfully. C:\Users\Przemek\AppData\Local\TempBg3948.html moved successfully. C:\Users\Przemek\AppData\Local\TempBH2416.html moved successfully. C:\Users\Przemek\AppData\Local\TempBH2972.html moved successfully. C:\Users\Przemek\AppData\Local\TempBI5708.html moved successfully. C:\Users\Przemek\AppData\Local\Tempbk1348.html moved successfully. C:\Users\Przemek\AppData\Local\TempBl4128.html moved successfully. C:\Users\Przemek\AppData\Local\Tempbn5044.html moved successfully. C:\Users\Przemek\AppData\Local\TempBo2600.html moved successfully. C:\Users\Przemek\AppData\Local\Tempbp2756.html moved successfully. C:\Users\Przemek\AppData\Local\TempbR2124.html moved successfully. C:\Users\Przemek\AppData\Local\TempBR2720.html moved successfully. C:\Users\Przemek\AppData\Local\TempbR4048.html moved successfully. C:\Users\Przemek\AppData\Local\TempbS2108.html moved successfully. C:\Users\Przemek\AppData\Local\TempBS2616.html moved successfully. C:\Users\Przemek\AppData\Local\TempBt1600.html moved successfully. C:\Users\Przemek\AppData\Local\TempBt2960.html moved successfully. C:\Users\Przemek\AppData\Local\TempBU1092.html moved successfully. C:\Users\Przemek\AppData\Local\TempBv3032.html moved successfully. C:\Users\Przemek\AppData\Local\TempbV3844.html moved successfully. C:\Users\Przemek\AppData\Local\TempbV5920.html moved successfully. C:\Users\Przemek\AppData\Local\TempBW1560.html moved successfully. C:\Users\Przemek\AppData\Local\TempByN376.html moved successfully. C:\Users\Przemek\AppData\Local\TempBZ3708.html moved successfully. C:\Users\Przemek\AppData\Local\TempBZ4552.html moved successfully. C:\Users\Przemek\AppData\Local\TempcB2388.html moved successfully. C:\Users\Przemek\AppData\Local\TempCC2972.html moved successfully. C:\Users\Przemek\AppData\Local\TempCD4360.html moved successfully. C:\Users\Przemek\AppData\Local\Tempch2020.html moved successfully. C:\Users\Przemek\AppData\Local\TempCi3292.html moved successfully. C:\Users\Przemek\AppData\Local\Tempcj1944.html moved successfully. C:\Users\Przemek\AppData\Local\TempCl3076.html moved successfully. C:\Users\Przemek\AppData\Local\TempcP3068.html moved successfully. C:\Users\Przemek\AppData\Local\TempcR1736.html moved successfully. C:\Users\Przemek\AppData\Local\Tempcr3824.html moved successfully. C:\Users\Przemek\AppData\Local\TempcS2920.html moved successfully. C:\Users\Przemek\AppData\Local\Tempct5760.html moved successfully. C:\Users\Przemek\AppData\Local\TempcW1972.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdb2216.html moved successfully. C:\Users\Przemek\AppData\Local\TempDC1620.html moved successfully. C:\Users\Przemek\AppData\Local\TempDe5840.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdg2248.html moved successfully. C:\Users\Przemek\AppData\Local\TempdH4648.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdi2644.html moved successfully. C:\Users\Przemek\AppData\Local\TempdK4212.html moved successfully. C:\Users\Przemek\AppData\Local\TempDk4920.html moved successfully. C:\Users\Przemek\AppData\Local\TempDmG264.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdn5924.html moved successfully. C:\Users\Przemek\AppData\Local\TempDO2512.html moved successfully. C:\Users\Przemek\AppData\Local\TempDp5224.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdq3976.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdr2468.html moved successfully. C:\Users\Przemek\AppData\Local\TempdrB400.html moved successfully. C:\Users\Przemek\AppData\Local\TempDS4728.html moved successfully. C:\Users\Przemek\AppData\Local\TempdT4240.html moved successfully. C:\Users\Przemek\AppData\Local\TempDV2248.html moved successfully. C:\Users\Przemek\AppData\Local\TempdV5244.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdv5744.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdw3996.html moved successfully. C:\Users\Przemek\AppData\Local\TempDX2572.html moved successfully. C:\Users\Przemek\AppData\Local\TempDx3260.html moved successfully. C:\Users\Przemek\AppData\Local\TempDZ1088.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdz1800.html moved successfully. C:\Users\Przemek\AppData\Local\Tempdz2944.html moved successfully. C:\Users\Przemek\AppData\Local\TempEd4612.html moved successfully. C:\Users\Przemek\AppData\Local\TempEd4768.html moved successfully. C:\Users\Przemek\AppData\Local\TempeE2460.html moved successfully. C:\Users\Przemek\AppData\Local\TempeF2112.html moved successfully. C:\Users\Przemek\AppData\Local\TempEF4504.html moved successfully. C:\Users\Przemek\AppData\Local\TempEF5596.html moved successfully. C:\Users\Przemek\AppData\Local\TempEFO748.html moved successfully. C:\Users\Przemek\AppData\Local\TempEG2364.html moved successfully. C:\Users\Przemek\AppData\Local\TempeH1920.html moved successfully. C:\Users\Przemek\AppData\Local\TempeH2980.html moved successfully. C:\Users\Przemek\AppData\Local\TempEj2756.html moved successfully. C:\Users\Przemek\AppData\Local\TempEl4336.html moved successfully. C:\Users\Przemek\AppData\Local\Tempen3692.html moved successfully. C:\Users\Przemek\AppData\Local\TempEp2144.html moved successfully. C:\Users\Przemek\AppData\Local\TempEQ3984.html moved successfully. C:\Users\Przemek\AppData\Local\TempEs2388.html moved successfully. C:\Users\Przemek\AppData\Local\TempEs3280.html moved successfully. C:\Users\Przemek\AppData\Local\TempEU3068.html moved successfully. C:\Users\Przemek\AppData\Local\TempewI940.html moved successfully. C:\Users\Przemek\AppData\Local\TempEX1092.html moved successfully. C:\Users\Przemek\AppData\Local\TempEx1500.html moved successfully. C:\Users\Przemek\AppData\Local\TempEY2364.html moved successfully. C:\Users\Przemek\AppData\Local\Tempez3840.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfb2080.html moved successfully. C:\Users\Przemek\AppData\Local\TempfC1992.html moved successfully. C:\Users\Przemek\AppData\Local\TempFCF532.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfd2156.html moved successfully. C:\Users\Przemek\AppData\Local\TempfE2172.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfe3368.html moved successfully. C:\Users\Przemek\AppData\Local\Tempff3532.html moved successfully. C:\Users\Przemek\AppData\Local\TempfG1084.html moved successfully. C:\Users\Przemek\AppData\Local\TempFG1992.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfg3780.html moved successfully. C:\Users\Przemek\AppData\Local\TempfH1612.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfi1748.html moved successfully. C:\Users\Przemek\AppData\Local\TempFO2572.html moved successfully. C:\Users\Przemek\AppData\Local\TempFO4620.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfp2024.html moved successfully. C:\Users\Przemek\AppData\Local\TempFs3412.html moved successfully. C:\Users\Przemek\AppData\Local\Tempfs3516.html moved successfully. C:\Users\Przemek\AppData\Local\TempFS5136.html moved successfully. C:\Users\Przemek\AppData\Local\TempFU1076.html moved successfully. C:\Users\Przemek\AppData\Local\TempFu1372.html moved successfully. C:\Users\Przemek\AppData\Local\TempFw3036.html moved successfully. C:\Users\Przemek\AppData\Local\TempfY2596.html moved successfully. C:\Users\Przemek\AppData\Local\TempFy3904.html moved successfully. C:\Users\Przemek\AppData\Local\TempfY4224.html moved successfully. C:\Users\Przemek\AppData\Local\TempGa4400.html moved successfully. C:\Users\Przemek\AppData\Local\TempGc3368.html moved successfully. C:\Users\Przemek\AppData\Local\TempGe4400.html moved successfully. C:\Users\Przemek\AppData\Local\TempgF3000.html moved successfully. C:\Users\Przemek\AppData\Local\Tempgg3708.html moved successfully. C:\Users\Przemek\AppData\Local\Tempgh2080.html moved successfully. C:\Users\Przemek\AppData\Local\TempGh3632.html moved successfully. C:\Users\Przemek\AppData\Local\Tempgj4824.html moved successfully. C:\Users\Przemek\AppData\Local\Tempgl2216.html moved successfully. C:\Users\Przemek\AppData\Local\TempgL3080.html moved successfully. C:\Users\Przemek\AppData\Local\TempGm2940.html moved successfully. C:\Users\Przemek\AppData\Local\TempgM3972.html moved successfully. C:\Users\Przemek\AppData\Local\TempGM5752.html moved successfully. C:\Users\Przemek\AppData\Local\TempGO3272.html moved successfully. C:\Users\Przemek\AppData\Local\TempGo4676.html moved successfully. C:\Users\Przemek\AppData\Local\TempGP2660.html moved successfully. C:\Users\Przemek\AppData\Local\Tempgr2252.html moved successfully. C:\Users\Przemek\AppData\Local\TempGr3856.html moved successfully. C:\Users\Przemek\AppData\Local\TempGT1796.html moved successfully. C:\Users\Przemek\AppData\Local\Tempgt3824.html moved successfully. C:\Users\Przemek\AppData\Local\TempGW1192.html moved successfully. C:\Users\Przemek\AppData\Local\TempGz3488.html moved successfully. C:\Users\Przemek\AppData\Local\TempgZ5728.html moved successfully. C:\Users\Przemek\AppData\Local\TempHA5584.html moved successfully. C:\Users\Przemek\AppData\Local\TempHB3904.html moved successfully. C:\Users\Przemek\AppData\Local\TemphE3272.html moved successfully. C:\Users\Przemek\AppData\Local\TemphE6092.html moved successfully. C:\Users\Przemek\AppData\Local\TempHG1920.html moved successfully. C:\Users\Przemek\AppData\Local\TemphGo164.html moved successfully. C:\Users\Przemek\AppData\Local\Temphh2172.html moved successfully. C:\Users\Przemek\AppData\Local\TempHh5504.html moved successfully. C:\Users\Przemek\AppData\Local\Temphh5744.html moved successfully. C:\Users\Przemek\AppData\Local\TempHHU380.html moved successfully. C:\Users\Przemek\AppData\Local\Temphi1116.html moved successfully. C:\Users\Przemek\AppData\Local\TempHI2576.html moved successfully. C:\Users\Przemek\AppData\Local\TemphI3260.html moved successfully. C:\Users\Przemek\AppData\Local\TempHI3360.html moved successfully. C:\Users\Przemek\AppData\Local\Temphi5920.html moved successfully. C:\Users\Przemek\AppData\Local\TempHK3116.html moved successfully. C:\Users\Przemek\AppData\Local\Temphk3784.html moved successfully. C:\Users\Przemek\AppData\Local\TemphO2600.html moved successfully. C:\Users\Przemek\AppData\Local\TemphO4860.html moved successfully. C:\Users\Przemek\AppData\Local\Temphr5684.html moved successfully. C:\Users\Przemek\AppData\Local\Temphs2416.html moved successfully. C:\Users\Przemek\AppData\Local\TempHt1876.html moved successfully. C:\Users\Przemek\AppData\Local\TemphT4192.html moved successfully. C:\Users\Przemek\AppData\Local\TemphT5048.html moved successfully. C:\Users\Przemek\AppData\Local\TempHx1748.html moved successfully. C:\Users\Przemek\AppData\Local\TempHx5716.html moved successfully. C:\Users\Przemek\AppData\Local\TempIA3960.html moved successfully. C:\Users\Przemek\AppData\Local\Tempic5012.html moved successfully. C:\Users\Przemek\AppData\Local\TempiF2416.html moved successfully. C:\Users\Przemek\AppData\Local\TempIf2660.html moved successfully. C:\Users\Przemek\AppData\Local\TempiH2156.html moved successfully. C:\Users\Przemek\AppData\Local\TempIH2236.html moved successfully. C:\Users\Przemek\AppData\Local\TempIh3252.html moved successfully. C:\Users\Przemek\AppData\Local\TempIH5136.html moved successfully. C:\Users\Przemek\AppData\Local\TempiI3600.html moved successfully. C:\Users\Przemek\AppData\Local\TempIJ2388.html moved successfully. C:\Users\Przemek\AppData\Local\Tempij2644.html moved successfully. C:\Users\Przemek\AppData\Local\TempiL4632.html moved successfully. C:\Users\Przemek\AppData\Local\TempiLx424.html moved successfully. C:\Users\Przemek\AppData\Local\Tempin4192.html moved successfully. C:\Users\Przemek\AppData\Local\TempiO1600.html moved successfully. C:\Users\Przemek\AppData\Local\TempIR1652.html moved successfully. C:\Users\Przemek\AppData\Local\Tempis2512.html moved successfully. C:\Users\Przemek\AppData\Local\TempiW1444.html moved successfully. C:\Users\Przemek\AppData\Local\Tempix4336.html moved successfully. C:\Users\Przemek\AppData\Local\TempIY1104.html moved successfully. C:\Users\Przemek\AppData\Local\TempiZ1484.html moved successfully. C:\Users\Przemek\AppData\Local\TempJA4800.html moved successfully. C:\Users\Przemek\AppData\Local\TempJA5568.html moved successfully. C:\Users\Przemek\AppData\Local\TempJB1076.html moved successfully. C:\Users\Przemek\AppData\Local\TempJc1564.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjc3488.html moved successfully. C:\Users\Przemek\AppData\Local\TempJD1744.html moved successfully. C:\Users\Przemek\AppData\Local\TempJD3840.html moved successfully. C:\Users\Przemek\AppData\Local\TempjD4756.html moved successfully. C:\Users\Przemek\AppData\Local\TempJf2860.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjf4128.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjg1800.html moved successfully. C:\Users\Przemek\AppData\Local\TempJI4060.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjm1088.html moved successfully. C:\Users\Przemek\AppData\Local\TempjN2888.html moved successfully. C:\Users\Przemek\AppData\Local\TempJP2392.html moved successfully. C:\Users\Przemek\AppData\Local\TempjQ2352.html moved successfully. C:\Users\Przemek\AppData\Local\TempJq2980.html moved successfully. C:\Users\Przemek\AppData\Local\TempjQ3864.html moved successfully. C:\Users\Przemek\AppData\Local\TempJQB932.html moved successfully. C:\Users\Przemek\AppData\Local\TempJT2848.html moved successfully. C:\Users\Przemek\AppData\Local\TempJt5500.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjv3692.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjw1836.html moved successfully. C:\Users\Przemek\AppData\Local\TempJW4188.html moved successfully. C:\Users\Przemek\AppData\Local\TempjWg748.html moved successfully. C:\Users\Przemek\AppData\Local\Tempjy3360.html moved successfully. C:\Users\Przemek\AppData\Local\TempjY5648.html moved successfully. C:\Users\Przemek\AppData\Local\TempJz3260.html moved successfully. C:\Users\Przemek\AppData\Local\TempkA2332.html moved successfully. C:\Users\Przemek\AppData\Local\TempKB1348.html moved successfully. C:\Users\Przemek\AppData\Local\TempkDQ728.html moved successfully. C:\Users\Przemek\AppData\Local\TempkE2716.html moved successfully. C:\Users\Przemek\AppData\Local\Tempke4588.html moved successfully. C:\Users\Przemek\AppData\Local\Tempkh3048.html moved successfully. C:\Users\Przemek\AppData\Local\TempKH3076.html moved successfully. C:\Users\Przemek\AppData\Local\TempkJ3532.html moved successfully. C:\Users\Przemek\AppData\Local\TempKK1032.html moved successfully. C:\Users\Przemek\AppData\Local\TempKl1204.html moved successfully. C:\Users\Przemek\AppData\Local\TempKl4068.html moved successfully. C:\Users\Przemek\AppData\Local\Tempkm5924.html moved successfully. C:\Users\Przemek\AppData\Local\TempKO1616.html moved successfully. C:\Users\Przemek\AppData\Local\TempKo1676.html moved successfully. C:\Users\Przemek\AppData\Local\TempkOS788.html moved successfully. C:\Users\Przemek\AppData\Local\Tempkp1368.html moved successfully. C:\Users\Przemek\AppData\Local\TempKP2940.html moved successfully. C:\Users\Przemek\AppData\Local\TempkR1552.html moved successfully. C:\Users\Przemek\AppData\Local\TempKv4060.html moved successfully. C:\Users\Przemek\AppData\Local\TempKx2104.html moved successfully. C:\Users\Przemek\AppData\Local\TempKY1740.html moved successfully. C:\Users\Przemek\AppData\Local\Tempky5504.html moved successfully. C:\Users\Przemek\AppData\Local\TempkYH204.html moved successfully. C:\Users\Przemek\AppData\Local\TempLb3456.html moved successfully. C:\Users\Przemek\AppData\Local\TemplD5252.html moved successfully. C:\Users\Przemek\AppData\Local\Templg1292.html moved successfully. C:\Users\Przemek\AppData\Local\Templi4148.html moved successfully. C:\Users\Przemek\AppData\Local\TemplJ3228.html moved successfully. C:\Users\Przemek\AppData\Local\TemplM3856.html moved successfully. C:\Users\Przemek\AppData\Local\Templm5252.html moved successfully. C:\Users\Przemek\AppData\Local\TempLS2628.html moved successfully. C:\Users\Przemek\AppData\Local\TempLu3784.html moved successfully. C:\Users\Przemek\AppData\Local\TemplUZ764.html moved successfully. C:\Users\Przemek\AppData\Local\Templw2616.html moved successfully. C:\Users\Przemek\AppData\Local\Templw2888.html moved successfully. C:\Users\Przemek\AppData\Local\Templx4608.html moved successfully. C:\Users\Przemek\AppData\Local\Templz1324.html moved successfully. C:\Users\Przemek\AppData\Local\TempLzu376.html moved successfully. C:\Users\Przemek\AppData\Local\TempMB1632.html moved successfully. C:\Users\Przemek\AppData\Local\TempMB1876.html moved successfully. C:\Users\Przemek\AppData\Local\TempMB3300.html moved successfully. C:\Users\Przemek\AppData\Local\Tempme1324.html moved successfully. C:\Users\Przemek\AppData\Local\Tempmg5688.html moved successfully. C:\Users\Przemek\AppData\Local\TempMH1880.html moved successfully. C:\Users\Przemek\AppData\Local\TempmH4400.html moved successfully. C:\Users\Przemek\AppData\Local\TempMh5272.html moved successfully. C:\Users\Przemek\AppData\Local\TempmJ1192.html moved successfully. C:\Users\Przemek\AppData\Local\TempmL4416.html moved successfully. C:\Users\Przemek\AppData\Local\TempMs1156.html moved successfully. C:\Users\Przemek\AppData\Local\TempmVp968.html moved successfully. C:\Users\Przemek\AppData\Local\TempnA2660.html moved successfully. C:\Users\Przemek\AppData\Local\TempNb1068.html moved successfully. C:\Users\Przemek\AppData\Local\TempNC2616.html moved successfully. C:\Users\Przemek\AppData\Local\TempnC3260.html moved successfully. C:\Users\Przemek\AppData\Local\TempnD2192.html moved successfully. C:\Users\Przemek\AppData\Local\TempNe1492.html moved successfully. C:\Users\Przemek\AppData\Local\TempNf2756.html moved successfully. C:\Users\Przemek\AppData\Local\TempNH4980.html moved successfully. C:\Users\Przemek\AppData\Local\TempnI2036.html moved successfully. C:\Users\Przemek\AppData\Local\TempNi2628.html moved successfully. C:\Users\Przemek\AppData\Local\TempnJ5076.html moved successfully. C:\Users\Przemek\AppData\Local\Tempnl2932.html moved successfully. C:\Users\Przemek\AppData\Local\TempNl4648.html moved successfully. C:\Users\Przemek\AppData\Local\TempNM3840.html moved successfully. C:\Users\Przemek\AppData\Local\TempNm4436.html moved successfully. C:\Users\Przemek\AppData\Local\Tempnm6092.html moved successfully. C:\Users\Przemek\AppData\Local\TempNn1612.html moved successfully. C:\Users\Przemek\AppData\Local\TempNo2492.html moved successfully. C:\Users\Przemek\AppData\Local\Tempno3972.html moved successfully. C:\Users\Przemek\AppData\Local\TempnQ2464.html moved successfully. C:\Users\Przemek\AppData\Local\TempNQb364.html moved successfully. C:\Users\Przemek\AppData\Local\Tempnt3516.html moved successfully. C:\Users\Przemek\AppData\Local\TempNu2080.html moved successfully. C:\Users\Przemek\AppData\Local\TempNu3252.html moved successfully. C:\Users\Przemek\AppData\Local\TempNV3508.html moved successfully. C:\Users\Przemek\AppData\Local\TempnW3972.html moved successfully. C:\Users\Przemek\AppData\Local\TempnX2108.html moved successfully. C:\Users\Przemek\AppData\Local\TempoA2492.html moved successfully. C:\Users\Przemek\AppData\Local\Tempoa3856.html moved successfully. C:\Users\Przemek\AppData\Local\TempOb1560.html moved successfully. C:\Users\Przemek\AppData\Local\TempOe3736.html moved successfully. C:\Users\Przemek\AppData\Local\Tempof2948.html moved successfully. C:\Users\Przemek\AppData\Local\Tempof3260.html moved successfully. C:\Users\Przemek\AppData\Local\TempOf4312.html moved successfully. C:\Users\Przemek\AppData\Local\TempOg5772.html moved successfully. C:\Users\Przemek\AppData\Local\TempOH2372.html moved successfully. C:\Users\Przemek\AppData\Local\TempOH4252.html moved successfully. C:\Users\Przemek\AppData\Local\TempoI2800.html moved successfully. C:\Users\Przemek\AppData\Local\TempOi2832.html moved successfully. C:\Users\Przemek\AppData\Local\TempoI4560.html moved successfully. C:\Users\Przemek\AppData\Local\TempOK2160.html moved successfully. C:\Users\Przemek\AppData\Local\TempOL1116.html moved successfully. C:\Users\Przemek\AppData\Local\TempoL1164.html moved successfully. C:\Users\Przemek\AppData\Local\TempOl2832.html moved successfully. C:\Users\Przemek\AppData\Local\TempOO2828.html moved successfully. C:\Users\Przemek\AppData\Local\TempoO3140.html moved successfully. C:\Users\Przemek\AppData\Local\TempOp2292.html moved successfully. C:\Users\Przemek\AppData\Local\Tempop5708.html moved successfully. C:\Users\Przemek\AppData\Local\TempOp5752.html moved successfully. C:\Users\Przemek\AppData\Local\TempOq1260.html moved successfully. C:\Users\Przemek\AppData\Local\Tempos2044.html moved successfully. C:\Users\Przemek\AppData\Local\Tempos2800.html moved successfully. C:\Users\Przemek\AppData\Local\TempOS3412.html moved successfully. C:\Users\Przemek\AppData\Local\TempoS3508.html moved successfully. C:\Users\Przemek\AppData\Local\TempOU3456.html moved successfully. C:\Users\Przemek\AppData\Local\TempOu3588.html moved successfully. C:\Users\Przemek\AppData\Local\TempoV5688.html moved successfully. C:\Users\Przemek\AppData\Local\TempoX3196.html moved successfully. C:\Users\Przemek\AppData\Local\Tempoz4148.html moved successfully. C:\Users\Przemek\AppData\Local\Tempoz5392.html moved successfully. C:\Users\Przemek\AppData\Local\Temppb4920.html moved successfully. C:\Users\Przemek\AppData\Local\TempPC2156.html moved successfully. C:\Users\Przemek\AppData\Local\Temppc4000.html moved successfully. C:\Users\Przemek\AppData\Local\Temppd2144.html moved successfully. C:\Users\Przemek\AppData\Local\TempPE1752.html moved successfully. C:\Users\Przemek\AppData\Local\TemppE2904.html moved successfully. C:\Users\Przemek\AppData\Local\TempPE3300.html moved successfully. C:\Users\Przemek\AppData\Local\TempPi2472.html moved successfully. C:\Users\Przemek\AppData\Local\TempPj1564.html moved successfully. C:\Users\Przemek\AppData\Local\Temppj3292.html moved successfully. C:\Users\Przemek\AppData\Local\TempPl2628.html moved successfully. C:\Users\Przemek\AppData\Local\TemppN5648.html moved successfully. C:\Users\Przemek\AppData\Local\TempPO3564.html moved successfully. C:\Users\Przemek\AppData\Local\TemppP3864.html moved successfully. C:\Users\Przemek\AppData\Local\Temppq3948.html moved successfully. C:\Users\Przemek\AppData\Local\TempPR1232.html moved successfully. C:\Users\Przemek\AppData\Local\TemppR4456.html moved successfully. C:\Users\Przemek\AppData\Local\TempPs4876.html moved successfully. C:\Users\Przemek\AppData\Local\Temppt4588.html moved successfully. C:\Users\Przemek\AppData\Local\TempPWG204.html moved successfully. C:\Users\Przemek\AppData\Local\TempPx1260.html moved successfully. C:\Users\Przemek\AppData\Local\TempPX2304.html moved successfully. C:\Users\Przemek\AppData\Local\TemppY1532.html moved successfully. C:\Users\Przemek\AppData\Local\TemppYP764.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqa3488.html moved successfully. C:\Users\Przemek\AppData\Local\TempQb4768.html moved successfully. C:\Users\Przemek\AppData\Local\TempqC2292.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqc4400.html moved successfully. C:\Users\Przemek\AppData\Local\TempQC4824.html moved successfully. C:\Users\Przemek\AppData\Local\TempqD3548.html moved successfully. C:\Users\Przemek\AppData\Local\TempqF2104.html moved successfully. C:\Users\Przemek\AppData\Local\TempQf5224.html moved successfully. C:\Users\Przemek\AppData\Local\TempQfL768.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqiv940.html moved successfully. C:\Users\Przemek\AppData\Local\TempQm3564.html moved successfully. C:\Users\Przemek\AppData\Local\TempQN3872.html moved successfully. C:\Users\Przemek\AppData\Local\TempQn5756.html moved successfully. C:\Users\Przemek\AppData\Local\TempQQ3048.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqq4488.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqr3824.html moved successfully. C:\Users\Przemek\AppData\Local\TempqS1632.html moved successfully. C:\Users\Przemek\AppData\Local\TempqS4604.html moved successfully. C:\Users\Przemek\AppData\Local\TempQt3832.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqw2472.html moved successfully. C:\Users\Przemek\AppData\Local\TempQX1964.html moved successfully. C:\Users\Przemek\AppData\Local\Tempqy4604.html moved successfully. C:\Users\Przemek\AppData\Local\TemprA1232.html moved successfully. C:\Users\Przemek\AppData\Local\Tempra2416.html moved successfully. C:\Users\Przemek\AppData\Local\TempRa2436.html moved successfully. C:\Users\Przemek\AppData\Local\Tempra3360.html moved successfully. C:\Users\Przemek\AppData\Local\Temprb1156.html moved successfully. C:\Users\Przemek\AppData\Local\TempRd2436.html moved successfully. C:\Users\Przemek\AppData\Local\TempRe1736.html moved successfully. C:\Users\Przemek\AppData\Local\TempRe1920.html moved successfully. C:\Users\Przemek\AppData\Local\TempRF4728.html moved successfully. C:\Users\Przemek\AppData\Local\TemprH1924.html moved successfully. C:\Users\Przemek\AppData\Local\TemprI5032.html moved successfully. C:\Users\Przemek\AppData\Local\Temprj2800.html moved successfully. C:\Users\Przemek\AppData\Local\TemprJ4360.html moved successfully. C:\Users\Przemek\AppData\Local\Temprl1924.html moved successfully. C:\Users\Przemek\AppData\Local\TemprM2800.html moved successfully. C:\Users\Przemek\AppData\Local\TempRN2660.html moved successfully. C:\Users\Przemek\AppData\Local\TemprO5076.html moved successfully. C:\Users\Przemek\AppData\Local\TempRq1480.html moved successfully. C:\Users\Przemek\AppData\Local\TemprQ1616.html moved successfully. C:\Users\Przemek\AppData\Local\TempRrp968.html moved successfully. C:\Users\Przemek\AppData\Local\TempRt1836.html moved successfully. C:\Users\Przemek\AppData\Local\Tempru3780.html moved successfully. C:\Users\Przemek\AppData\Local\TemprW2636.html moved successfully. C:\Users\Przemek\AppData\Local\TempRw3280.html moved successfully. C:\Users\Przemek\AppData\Local\TempRw3996.html moved successfully. C:\Users\Przemek\AppData\Local\TempRX5572.html moved successfully. C:\Users\Przemek\AppData\Local\TempRY1084.html moved successfully. C:\Users\Przemek\AppData\Local\TempsA2508.html moved successfully. C:\Users\Przemek\AppData\Local\TempsD5988.html moved successfully. C:\Users\Przemek\AppData\Local\Tempsf2036.html moved successfully. C:\Users\Przemek\AppData\Local\TempSj3116.html moved successfully. C:\Users\Przemek\AppData\Local\TempSK4060.html moved successfully. C:\Users\Przemek\AppData\Local\TempsL2600.html moved successfully. C:\Users\Przemek\AppData\Local\TempSP4632.html moved successfully. C:\Users\Przemek\AppData\Local\TempsP5568.html moved successfully. C:\Users\Przemek\AppData\Local\TempsQ2828.html moved successfully. C:\Users\Przemek\AppData\Local\Tempsq5500.html moved successfully. C:\Users\Przemek\AppData\Local\TempssU876.html moved successfully. C:\Users\Przemek\AppData\Local\Tempsu5684.html moved successfully. C:\Users\Przemek\AppData\Local\TempsW2720.html moved successfully. C:\Users\Przemek\AppData\Local\TempsY3632.html moved successfully. C:\Users\Przemek\AppData\Local\TempSZ1964.html moved successfully. C:\Users\Przemek\AppData\Local\TempTc5760.html moved successfully. C:\Users\Przemek\AppData\Local\Temptd1260.html moved successfully. C:\Users\Przemek\AppData\Local\TempTe2932.html moved successfully. C:\Users\Przemek\AppData\Local\TempTG2944.html moved successfully. C:\Users\Przemek\AppData\Local\Temptg3768.html moved successfully. C:\Users\Przemek\AppData\Local\TempTg4692.html moved successfully. C:\Users\Przemek\AppData\Local\Temptgw760.html moved successfully. C:\Users\Przemek\AppData\Local\TempTH4060.html moved successfully. C:\Users\Przemek\AppData\Local\TempTi3564.html moved successfully. C:\Users\Przemek\AppData\Local\TemptI5292.html moved successfully. C:\Users\Przemek\AppData\Local\TemptIK760.html moved successfully. C:\Users\Przemek\AppData\Local\TemptK4676.html moved successfully. C:\Users\Przemek\AppData\Local\TempTl1068.html moved successfully. C:\Users\Przemek\AppData\Local\TempTM2392.html moved successfully. C:\Users\Przemek\AppData\Local\TemptM2468.html moved successfully. C:\Users\Przemek\AppData\Local\TempTN2156.html moved successfully. C:\Users\Przemek\AppData\Local\Temptr3736.html moved successfully. C:\Users\Przemek\AppData\Local\TempTs3672.html moved successfully. C:\Users\Przemek\AppData\Local\TempTt2756.html moved successfully. C:\Users\Przemek\AppData\Local\TemptV2600.html moved successfully. C:\Users\Przemek\AppData\Local\TempTVE932.html moved successfully. C:\Users\Przemek\AppData\Local\TempTW2448.html moved successfully. C:\Users\Przemek\AppData\Local\Temptw4488.html moved successfully. C:\Users\Przemek\AppData\Local\Temptx1796.html moved successfully. C:\Users\Przemek\AppData\Local\TempTX3312.html moved successfully. C:\Users\Przemek\AppData\Local\Temptx4552.html moved successfully. C:\Users\Przemek\AppData\Local\Tempty1944.html moved successfully. C:\Users\Przemek\AppData\Local\TempUa3960.html moved successfully. C:\Users\Przemek\AppData\Local\TempuD2884.html moved successfully. C:\Users\Przemek\AppData\Local\TempuF3124.html moved successfully. C:\Users\Przemek\AppData\Local\TempuG1228.html moved successfully. C:\Users\Przemek\AppData\Local\TempuG4620.html moved successfully. C:\Users\Przemek\AppData\Local\TempUH2616.html moved successfully. C:\Users\Przemek\AppData\Local\TempUH3040.html moved successfully. C:\Users\Przemek\AppData\Local\TempuI2352.html moved successfully. C:\Users\Przemek\AppData\Local\TempUI2848.html moved successfully. C:\Users\Przemek\AppData\Local\TempUI3032.html moved successfully. C:\Users\Przemek\AppData\Local\TempUj3460.html moved successfully. C:\Users\Przemek\AppData\Local\TempUJ3984.html moved successfully. C:\Users\Przemek\AppData\Local\TempUk3312.html moved successfully. C:\Users\Przemek\AppData\Local\Tempuq4692.html moved successfully. C:\Users\Przemek\AppData\Local\TempUs3672.html moved successfully. C:\Users\Przemek\AppData\Local\Tempus4456.html moved successfully. C:\Users\Przemek\AppData\Local\TempUT5300.html moved successfully. C:\Users\Przemek\AppData\Local\TempuU5404.html moved successfully. C:\Users\Przemek\AppData\Local\TempUV2960.html moved successfully. C:\Users\Przemek\AppData\Local\TempUv5032.html moved successfully. C:\Users\Przemek\AppData\Local\TempUX2192.html moved successfully. C:\Users\Przemek\AppData\Local\TempUx4504.html moved successfully. C:\Users\Przemek\AppData\Local\TempuxI920.html moved successfully. C:\Users\Przemek\AppData\Local\Tempuy1500.html moved successfully. C:\Users\Przemek\AppData\Local\TempUy5244.html moved successfully. C:\Users\Przemek\AppData\Local\TempVA1204.html moved successfully. C:\Users\Przemek\AppData\Local\TempVa1368.html moved successfully. C:\Users\Przemek\AppData\Local\TempvC2464.html moved successfully. C:\Users\Przemek\AppData\Local\Tempvd2768.html moved successfully. C:\Users\Przemek\AppData\Local\TempVD3408.html moved successfully. C:\Users\Przemek\AppData\Local\Tempve2332.html moved successfully. C:\Users\Przemek\AppData\Local\TempVe3712.html moved successfully. C:\Users\Przemek\AppData\Local\TempVg1492.html moved successfully. C:\Users\Przemek\AppData\Local\TempVg5728.html moved successfully. C:\Users\Przemek\AppData\Local\Tempvh5772.html moved successfully. C:\Users\Przemek\AppData\Local\TempvI4252.html moved successfully. C:\Users\Przemek\AppData\Local\TempvJ3712.html moved successfully. C:\Users\Przemek\AppData\Local\TempvK1228.html moved successfully. C:\Users\Przemek\AppData\Local\TempVk4344.html moved successfully. C:\Users\Przemek\AppData\Local\Tempvn2404.html moved successfully. C:\Users\Przemek\AppData\Local\TempvN5584.html moved successfully. C:\Users\Przemek\AppData\Local\TempVo2420.html moved successfully. C:\Users\Przemek\AppData\Local\TempvP1920.html moved successfully. C:\Users\Przemek\AppData\Local\TempVP6132.html moved successfully. C:\Users\Przemek\AppData\Local\Tempvq2508.html moved successfully. C:\Users\Przemek\AppData\Local\TempVs2716.html moved successfully. C:\Users\Przemek\AppData\Local\Tempvu3564.html moved successfully. C:\Users\Przemek\AppData\Local\Tempvw2388.html moved successfully. C:\Users\Przemek\AppData\Local\TempvX1480.html moved successfully. C:\Users\Przemek\AppData\Local\TempVzL264.html moved successfully. C:\Users\Przemek\AppData\Local\TempWa2420.html moved successfully. C:\Users\Przemek\AppData\Local\TempWc3864.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwci432.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwd1108.html moved successfully. C:\Users\Przemek\AppData\Local\TempwE2448.html moved successfully. C:\Users\Przemek\AppData\Local\TempwH1836.html moved successfully. C:\Users\Przemek\AppData\Local\TempwH4240.html moved successfully. C:\Users\Przemek\AppData\Local\TempWh5376.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwi2236.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwk3028.html moved successfully. C:\Users\Przemek\AppData\Local\TempWkI728.html moved successfully. C:\Users\Przemek\AppData\Local\TempWl5012.html moved successfully. C:\Users\Przemek\AppData\Local\TempwOK400.html moved successfully. C:\Users\Przemek\AppData\Local\TempWp2372.html moved successfully. C:\Users\Przemek\AppData\Local\TempwP3952.html moved successfully. C:\Users\Przemek\AppData\Local\TempWP5716.html moved successfully. C:\Users\Przemek\AppData\Local\TempWQ2080.html moved successfully. C:\Users\Przemek\AppData\Local\TempWt3032.html moved successfully. C:\Users\Przemek\AppData\Local\TempWT4224.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwt5292.html moved successfully. C:\Users\Przemek\AppData\Local\TempWw1032.html moved successfully. C:\Users\Przemek\AppData\Local\TempWx1084.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwx3408.html moved successfully. C:\Users\Przemek\AppData\Local\TempwX3508.html moved successfully. C:\Users\Przemek\AppData\Local\TempwZ2344.html moved successfully. C:\Users\Przemek\AppData\Local\Tempwz2884.html moved successfully. C:\Users\Przemek\AppData\Local\TempXa3080.html moved successfully. C:\Users\Przemek\AppData\Local\Tempxe1372.html moved successfully. C:\Users\Przemek\AppData\Local\Tempxe3488.html moved successfully. C:\Users\Przemek\AppData\Local\TempXfz768.html moved successfully. C:\Users\Przemek\AppData\Local\TempxH4560.html moved successfully. C:\Users\Przemek\AppData\Local\TempXi2628.html moved successfully. C:\Users\Przemek\AppData\Local\TempXk2020.html moved successfully. C:\Users\Przemek\AppData\Local\TempxL2920.html moved successfully. C:\Users\Przemek\AppData\Local\TempXM1492.html moved successfully. C:\Users\Przemek\AppData\Local\TempXM2404.html moved successfully. C:\Users\Przemek\AppData\Local\TempXn2392.html moved successfully. C:\Users\Przemek\AppData\Local\TempXn3864.html moved successfully. C:\Users\Przemek\AppData\Local\TempxO3856.html moved successfully. C:\Users\Przemek\AppData\Local\TempXQ3460.html moved successfully. C:\Users\Przemek\AppData\Local\TempXq4292.html moved successfully. C:\Users\Przemek\AppData\Local\Tempxt5044.html moved successfully. C:\Users\Przemek\AppData\Local\TempXw1260.html moved successfully. C:\Users\Przemek\AppData\Local\TempXw2252.html moved successfully. C:\Users\Przemek\AppData\Local\TempxW3564.html moved successfully. C:\Users\Przemek\AppData\Local\TempXw4344.html moved successfully. C:\Users\Przemek\AppData\Local\Tempxx4472.html moved successfully. C:\Users\Przemek\AppData\Local\Tempxz1520.html moved successfully. C:\Users\Przemek\AppData\Local\Tempxz4416.html moved successfully. C:\Users\Przemek\AppData\Local\TempYAt164.html moved successfully. C:\Users\Przemek\AppData\Local\TempyB4148.html moved successfully. C:\Users\Przemek\AppData\Local\TempYe1880.html moved successfully. C:\Users\Przemek\AppData\Local\TempYF5272.html moved successfully. C:\Users\Przemek\AppData\Local\TempYH3824.html moved successfully. C:\Users\Przemek\AppData\Local\Tempyi4420.html moved successfully. C:\Users\Przemek\AppData\Local\TempYo1552.html moved successfully. C:\Users\Przemek\AppData\Local\Tempyo3028.html moved successfully. C:\Users\Przemek\AppData\Local\Tempyq2636.html moved successfully. C:\Users\Przemek\AppData\Local\TempYR3972.html moved successfully. C:\Users\Przemek\AppData\Local\TempyS2948.html moved successfully. C:\Users\Przemek\AppData\Local\TempYT6132.html moved successfully. C:\Users\Przemek\AppData\Local\TempYVV424.html moved successfully. C:\Users\Przemek\AppData\Local\TempyY3000.html moved successfully. C:\Users\Przemek\AppData\Local\TempZb1164.html moved successfully. C:\Users\Przemek\AppData\Local\TempZb1292.html moved successfully. C:\Users\Przemek\AppData\Local\Tempzb1620.html moved successfully. C:\Users\Przemek\AppData\Local\Tempzb5636.html moved successfully. C:\Users\Przemek\AppData\Local\TempzD5300.html moved successfully. C:\Users\Przemek\AppData\Local\TempZf4000.html moved successfully. C:\Users\Przemek\AppData\Local\TempZh3212.html moved successfully. C:\Users\Przemek\AppData\Local\TempZj3212.html moved successfully. C:\Users\Przemek\AppData\Local\TempzK1120.html moved successfully. C:\Users\Przemek\AppData\Local\TempZk2572.html moved successfully. C:\Users\Przemek\AppData\Local\TempZK3040.html moved successfully. C:\Users\Przemek\AppData\Local\TempzK4756.html moved successfully. C:\Users\Przemek\AppData\Local\TempZl2576.html moved successfully. C:\Users\Przemek\AppData\Local\TempZL3588.html moved successfully. C:\Users\Przemek\AppData\Local\TempZm1744.html moved successfully. C:\Users\Przemek\AppData\Local\Tempzn1084.html moved successfully. C:\Users\Przemek\AppData\Local\TempzO1120.html moved successfully. C:\Users\Przemek\AppData\Local\Tempzo3124.html moved successfully. C:\Users\Przemek\AppData\Local\TempZO4800.html moved successfully. C:\Users\Przemek\AppData\Local\TempzP1836.html moved successfully. C:\Users\Przemek\AppData\Local\TempZS5572.html moved successfully. C:\Users\Przemek\AppData\Local\TempZt2596.html moved successfully. C:\Users\Przemek\AppData\Local\Tempzt5404.html moved successfully. C:\Users\Przemek\AppData\Local\Tempzv3360.html moved successfully. C:\Users\Przemek\AppData\Local\TempzVR380.html moved successfully. C:\Users\Przemek\AppData\Local\TempzW2160.html moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Przemek ->Temp folder emptied: 314426889 bytes ->Temporary Internet Files folder emptied: 112851041 bytes ->Java cache emptied: 62333407 bytes ->FireFox cache emptied: 127668063 bytes ->Opera cache emptied: 8242022 bytes ->Flash cache emptied: 75341 bytes User: Public User: Zbyszek ->Temp folder emptied: 8095635 bytes ->Temporary Internet Files folder emptied: 508339 bytes ->Java cache emptied: 9876 bytes ->FireFox cache emptied: 66107157 bytes ->Flash cache emptied: 2389 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 876681262 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 1 504,00 mb OTL by OldTimer - Version 3.2.20.6 log created on 02112011_115439 Files\Folders moved on Reboot... Registry entries deleted on Reboot... [/log] [b]OTL[/b] [log]OTL logfile created on: 2011-02-11 12:02:42 - Run 5 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Przemek\Desktop\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 51,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 72,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 29,30 Gb Total Space | 4,28 Gb Free Space | 14,62% Space Free | Partition Type: NTFS Drive D: | 48,83 Gb Total Space | 13,02 Gb Free Space | 26,66% Space Free | Partition Type: NTFS Drive E: | 219,96 Gb Total Space | 200,26 Gb Free Space | 91,04% Space Free | Partition Type: NTFS Computer Name: PRZEMEK-PC | User Name: Przemek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (All) ==========[/color] PRC - [2011-02-04 04:58:58 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe PRC - [2011-01-31 10:57:03 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Przemek\Desktop\Downloads\OTL.exe PRC - [2011-01-05 11:31:10 | 000,424,448 | ---- | M] (Sony Ericsson) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe PRC - [2010-12-13 13:52:46 | 000,074,960 | ---- | M] () -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe PRC - [2010-11-04 17:15:50 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2010-11-04 17:15:32 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2010-11-02 05:34:44 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe PRC - [2010-09-21 13:03:14 | 001,710,464 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE PRC - [2010-09-21 13:03:14 | 000,193,408 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE PRC - [2010-08-21 06:32:37 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009-12-19 23:00:00 | 006,095,504 | ---- | M] (MySQL AB) -- E:\Xampp\xampp\mysql\bin\mysqld.exe PRC - [2009-12-19 23:00:00 | 000,029,416 | ---- | M] (Apache Software Foundation) -- E:\Xampp\xampp\apache\bin\httpd.exe PRC - [2009-10-31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-10-28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009-07-30 17:51:02 | 000,068,136 | ---- | M] () -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe PRC - [2009-07-14 02:14:47 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe PRC - [2009-07-14 02:14:47 | 000,254,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe PRC - [2009-07-14 02:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2009-07-14 02:14:42 | 000,204,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\servicing\TrustedInstaller.exe PRC - [2009-07-14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 02:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009-07-14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009-07-14 02:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009-07-14 02:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sppsvc.exe PRC - [2009-07-14 02:14:23 | 000,261,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2009-07-14 02:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009-07-14 02:14:19 | 000,092,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe PRC - [2009-07-14 02:14:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2009-06-25 07:07:32 | 007,547,424 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe PRC - [2009-05-27 02:27:04 | 029,262,680 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe PRC - [2009-05-26 16:46:10 | 001,159,168 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe PRC - [2009-03-31 09:39:36 | 000,233,472 | ---- | M] (Teruten) -- C:\Windows\System32\FsUsbExService.Exe PRC - [2009-03-30 15:00:54 | 000,221,184 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\Brmfcmon\BrMfcMon.exe PRC - [2009-03-23 17:02:50 | 000,872,448 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\ControlCenter3\BrccMCtl.exe PRC - [2008-11-24 21:31:12 | 000,087,904 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe PRC - [2008-10-25 11:44:34 | 000,031,072 | ---- | M] (Microsoft Corporation) -- E:\Microsoft Office\Office12\GrooveMonitor.exe PRC - [2008-02-18 17:00:02 | 000,028,672 | ---- | M] (Creative Technology Ltd.) -- C:\Windows\V0530Mon.exe PRC - [2007-05-31 08:21:28 | 000,648,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\WindowsMobile\wmdc.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2011-01-31 10:57:03 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Przemek\Desktop\Downloads\OTL.exe MOD - [2010-10-27 05:40:24 | 001,289,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2010-08-21 06:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll MOD - [2010-07-27 15:03:24 | 012,867,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2010-06-29 06:02:02 | 001,413,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2010-04-07 08:10:36 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2009-12-08 12:33:31 | 000,857,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009-12-08 12:32:02 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009-07-14 02:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009-07-14 02:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009-07-14 02:16:17 | 000,811,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009-07-14 02:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009-07-14 02:16:17 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2009-07-14 02:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2009-07-14 02:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009-07-14 02:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009-07-14 02:16:15 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspicli.dll MOD - [2009-07-14 02:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2009-07-14 02:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009-07-14 02:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009-07-14 02:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009-07-14 02:16:13 | 000,652,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009-07-14 02:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sechost.dll MOD - [2009-07-14 02:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009-07-14 02:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samcli.dll MOD - [2009-07-14 02:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009-07-14 02:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009-07-14 02:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009-07-14 02:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\profapi.dll MOD - [2009-07-14 02:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll MOD - [2009-07-14 02:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009-07-14 02:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netutils.dll MOD - [2009-07-14 02:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009-07-14 02:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009-07-14 02:15:36 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009-07-14 02:15:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll MOD - [2009-07-14 02:15:32 | 000,118,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009-07-14 02:15:22 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009-07-14 02:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwmapi.dll MOD - [2009-07-14 02:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\devobj.dll MOD - [2009-07-14 02:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009-07-14 02:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cryptbase.dll MOD - [2009-07-14 02:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2009-07-14 02:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cfgmgr32.dll MOD - [2009-07-14 02:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009-07-14 02:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009-07-14 02:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx MOD - [2009-07-14 02:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (nosGetPlusHelper) getPlus(R) SRV - File not found [Auto | Stopped] -- -- (NMSAccess) SRV - File not found [Auto | Stopped] -- -- (aswUpdSv) SRV - [2010-11-04 17:18:10 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2010-11-04 17:15:50 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2010-11-02 05:36:16 | 000,801,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2010-10-26 16:05:24 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion) SRV - [2010-06-14 14:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010-06-13 07:51:43 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2010-05-06 16:41:52 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-03-18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009-12-19 23:00:00 | 006,095,504 | ---- | M] (MySQL AB) [Auto | Running] -- E:\Xampp\xampp\mysql\bin\mysqld.exe -- (MySQL) SRV - [2009-12-19 23:00:00 | 000,029,416 | ---- | M] (Apache Software Foundation) [Auto | Running] -- E:\Xampp\xampp\apache\bin\httpd.exe -- (Apache2.2) SRV - [2009-07-30 17:51:02 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe -- (GEST Service) SRV - [2009-07-14 02:16:21 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wwansvc.dll -- (WwanSvc) SRV - [2009-07-14 02:16:17 | 000,151,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbiosrvc.dll -- (WbioSrvc) SRV - [2009-07-14 02:16:17 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpo.dll -- (Power) SRV - [2009-07-14 02:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes) SRV - [2009-07-14 02:16:15 | 000,053,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sppuinotify.dll -- (sppuinotify) SRV - [2009-07-14 02:16:13 | 000,043,520 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\RpcEpMap.dll -- (RpcEptMapper) SRV - [2009-07-14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (PNRPsvc) SRV - [2009-07-14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (p2pimsvc) SRV - [2009-07-14 02:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\provsvc.dll -- (HomeGroupProvider) SRV - [2009-07-14 02:16:12 | 000,020,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpauto.dll -- (PNRPAutoReg) SRV - [2009-07-14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-07-14 02:15:36 | 000,194,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ListSvc.dll -- (HomeGroupListener) SRV - [2009-07-14 02:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp) SRV - [2009-07-14 02:15:10 | 000,218,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\defragsvc.dll -- (defragsvc) SRV - [2009-07-14 02:14:59 | 000,076,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\bdesvc.dll -- (BDESVC) SRV - [2009-07-14 02:14:58 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AxInstSv.dll -- (AxInstSV) Instalator formantów ActiveX (AxInstSV) SRV - [2009-07-14 02:14:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appidsvc.dll -- (AppIDSvc) SRV - [2009-07-14 02:14:30 | 000,009,216 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\regedt32.exe -- (.EsetTrialReset) SRV - [2009-07-14 02:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\sppsvc.exe -- (sppsvc) SRV - [2009-03-31 09:39:36 | 000,233,472 | ---- | M] (Teruten) [Auto | Running] -- C:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2008-10-25 11:44:08 | 000,065,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- E:\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service) SRV - [2007-05-31 15:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2007-05-31 15:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-02-11 11:59:25 | 000,017,488 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\gdrv.sys -- (gdrv) DRV - [2010-09-03 06:13:46 | 000,137,144 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\Windows\System32\drivers\eamonm.sys -- (eamonm) DRV - [2010-07-29 12:31:26 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\System32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010-07-29 12:31:26 | 000,096,920 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\epfwwfpr.sys -- (epfwwfpr) DRV - [2010-03-12 17:30:15 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-03-11 20:18:02 | 000,029,696 | ---- | M] (ASUSTek Computer Inc) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ipfnd51.sys -- (ip100Avista) DRV - [2010-03-01 11:43:16 | 000,098,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039bus.sys -- (s1039bus) Sony Ericsson Device 1039 driver (WDM) DRV - [2010-03-01 11:43:12 | 000,124,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039mdm.sys -- (s1039mdm) DRV - [2010-03-01 11:43:12 | 000,117,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039mgmt.sys -- (s1039mgmt) Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM) DRV - [2010-03-01 11:43:12 | 000,113,904 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039obex.sys -- (s1039obex) DRV - [2010-03-01 11:43:12 | 000,014,960 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039mdfl.sys -- (s1039mdfl) DRV - [2010-03-01 11:43:10 | 000,123,504 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039unic.sys -- (s1039unic) Sony Ericsson Device 1039 USB Ethernet Emulation (WDM) DRV - [2010-03-01 11:43:10 | 000,025,456 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1039nd5.sys -- (s1039nd5) Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS) DRV - [2010-02-26 13:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010-02-26 13:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010-02-26 13:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010-02-26 13:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-14 17:02:00 | 000,273,728 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\V0530Vid.sys -- (V0530Dev) DRV - [2009-12-11 08:44:02 | 000,133,720 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\ksecpkg.sys -- (KSecPkg) DRV - [2009-07-30 12:58:26 | 000,187,392 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rt86win7.sys -- (RTL8167) DRV - [2009-07-14 02:26:21 | 000,015,952 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\cmdide.sys -- (cmdide) DRV - [2009-07-14 02:26:17 | 000,297,552 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpahci.sys -- (adpahci) DRV - [2009-07-14 02:26:15 | 000,422,976 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adp94xx.sys -- (adp94xx) DRV - [2009-07-14 02:26:15 | 000,159,312 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsbs.sys -- (amdsbs) DRV - [2009-07-14 02:26:15 | 000,146,512 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpu320.sys -- (adpu320) DRV - [2009-07-14 02:26:15 | 000,086,608 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arcsas.sys -- (arcsas) DRV - [2009-07-14 02:26:15 | 000,079,952 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsata.sys -- (amdsata) DRV - [2009-07-14 02:26:15 | 000,076,368 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arc.sys -- (arc) DRV - [2009-07-14 02:26:15 | 000,023,616 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\amdxata.sys -- (amdxata) DRV - [2009-07-14 02:26:15 | 000,014,400 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\aliide.sys -- (aliide) DRV - [2009-07-14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvstor.sys -- (nvstor) DRV - [2009-07-14 02:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvraid.sys -- (nvraid) DRV - [2009-07-14 02:20:44 | 000,044,624 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nfrd960.sys -- (nfrd960) DRV - [2009-07-14 02:20:37 | 000,089,168 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas.sys -- (LSI_SAS) DRV - [2009-07-14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iaStorV.sys -- (iaStorV) DRV - [2009-07-14 02:20:36 | 000,235,584 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MegaSR.sys -- (MegaSR) DRV - [2009-07-14 02:20:36 | 000,096,848 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_scsi.sys -- (LSI_SCSI) DRV - [2009-07-14 02:20:36 | 000,095,824 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_fc.sys -- (LSI_FC) DRV - [2009-07-14 02:20:36 | 000,054,864 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV - [2009-07-14 02:20:36 | 000,041,040 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iirsp.sys -- (iirsp) DRV - [2009-07-14 02:20:36 | 000,030,800 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\megasas.sys -- (megasas) DRV - [2009-07-14 02:20:36 | 000,013,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hwpolicy.sys -- (hwpolicy) DRV - [2009-07-14 02:20:28 | 000,453,712 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\elxstor.sys -- (elxstor) DRV - [2009-07-14 02:20:28 | 000,070,720 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\djsvs.sys -- (aic78xx) DRV - [2009-07-14 02:20:28 | 000,067,152 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HpSAMD.sys -- (HpSAMD) DRV - [2009-07-14 02:20:28 | 000,046,160 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\fsdepends.sys -- (FsDepends) DRV - [2009-07-14 02:19:11 | 000,141,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vsmraid.sys -- (vsmraid) DRV - [2009-07-14 02:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009-07-14 02:19:10 | 000,159,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vhdmp.sys -- (vhdmp) DRV - [2009-07-14 02:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009-07-14 02:19:10 | 000,032,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vdrvroot.sys -- (vdrvroot) DRV - [2009-07-14 02:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-14 02:19:10 | 000,016,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\viaide.sys -- (viaide) DRV - [2009-07-14 02:19:04 | 001,383,488 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql2300.sys -- (ql2300) DRV - [2009-07-14 02:19:04 | 000,173,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\rdyboost.sys -- (rdyboost) DRV - [2009-07-14 02:19:04 | 000,106,064 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql40xx.sys -- (ql40xx) DRV - [2009-07-14 02:19:04 | 000,077,888 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\sisraid4.sys -- (SiSRaid4) DRV - [2009-07-14 02:19:04 | 000,043,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\pcw.sys -- (pcw) DRV - [2009-07-14 02:19:04 | 000,040,016 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\SiSRaid2.sys -- (SiSRaid2) DRV - [2009-07-14 02:19:04 | 000,021,072 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\stexstor.sys -- (stexstor) DRV - [2009-07-14 02:17:54 | 000,369,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\cng.sys -- (CNG) DRV - [2009-07-14 01:57:25 | 000,272,128 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\Brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2009-07-14 01:02:41 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rdpbus.sys -- (rdpbus) DRV - [2009-07-14 01:01:41 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\RDPREFMP.sys -- (RDPREFMP) DRV - [2009-07-14 00:55:00 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV - [2009-07-14 00:53:51 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\wfplwf.sys -- (WfpLwf) DRV - [2009-07-14 00:52:44 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ndiscap.sys -- (NdisCap) DRV - [2009-07-14 00:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifibus.sys -- (vwifibus) DRV - [2009-07-14 00:52:00 | 000,163,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\1394ohci.sys -- (1394ohci) DRV - [2009-07-14 00:51:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\umpass.sys -- (UmPass) DRV - [2009-07-14 00:51:23 | 000,080,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM) DRV - [2009-07-14 00:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 00:51:08 | 000,004,096 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mshidkmdf.sys -- (mshidkmdf) DRV - [2009-07-14 00:46:55 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MTConfig.sys -- (MTConfig) DRV - [2009-07-14 00:45:26 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CompositeBus.sys -- (CompositeBus) DRV - [2009-07-14 00:36:52 | 000,050,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\appid.sys -- (AppID) DRV - [2009-07-14 00:33:50 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\System32\drivers\scfilter.sys -- (scfilter) DRV - [2009-07-14 00:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009-07-14 00:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-14 00:24:05 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\discache.sys -- (discache) DRV - [2009-07-14 00:16:36 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\acpipmi.sys -- (AcpiPmi) DRV - [2009-07-14 00:11:04 | 000,052,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdppm.sys -- (AmdPPM) DRV - [2009-07-13 23:54:14 | 000,026,624 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009-07-13 23:53:33 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbMdm.sys -- (BrUsbMdm) DRV - [2009-07-13 23:53:33 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbSer.sys -- (BrUsbSer) DRV - [2009-07-13 23:53:32 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrSerWdm.sys -- (BrSerWdm) DRV - [2009-07-13 23:53:28 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltLo.sys -- (BrFiltLo) DRV - [2009-07-13 23:53:28 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltUp.sys -- (BrFiltUp) DRV - [2009-07-13 23:09:17 | 004,194,816 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag) DRV - [2009-07-13 23:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x) DRV - [2009-07-13 23:02:48 | 003,100,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\evbdx.sys -- (ebdrv) DRV - [2009-07-13 23:02:48 | 000,430,080 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\bxvbdx.sys -- (b06bdrv) DRV - [2009-06-25 07:07:34 | 002,375,776 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2009-03-31 09:39:36 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2009-03-20 10:01:26 | 000,121,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2009-03-20 10:01:26 | 000,090,112 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM) DRV - [2009-03-20 10:01:26 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2006-01-13 14:00:52 | 000,015,872 | ---- | M] (Flint Incorporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\vd_filedisk.sys -- (VD_FileDisk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3 FF - prefs.js..extensions.enabledItems: {e3f6c2cc-d8db-498c-af6c-499fb211db97}:1.10.2 FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: E:\Nokia PC Suite\Nokia PC Suite 7\bkmrksync\ [2010-08-09 13:13:23 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0b11\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 11\components [2011-02-10 12:28:27 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0b11\extensions\\Plugins: C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugins FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Components: E:\Mozilla Thundebird\components [2011-02-08 19:45:03 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Plugins: E:\Mozilla Thundebird\plugins [2011-02-08 19:48:21 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-01-31 10:21:54 | 000,000,000 | ---D | M] [2010-05-11 17:30:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Extensions [2010-05-11 17:30:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2010-03-14 15:29:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Extensions\IMVUClientXUL@imvu.com [2011-02-10 20:28:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions [2010-12-25 19:00:21 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2011-02-10 10:59:53 | 000,000,000 | ---D | M] (Page Speed) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions\{e3f6c2cc-d8db-498c-af6c-499fb211db97} [2011-02-07 18:51:05 | 000,000,000 | ---D | M] (Firebug) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\g0n33mb1.default\extensions\firebug@software.joehewitt.com File not found (No name found) -- () (No name found) -- C:\USERS\PRZEMEK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G0N33MB1.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM.XPI O1 HOSTS File: ([2009-06-10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Java\bin\jp2ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - File not found O3 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [GrooveMonitor] E:\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation) O4 - HKLM..\Run: [NPSStartup] File not found O4 - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [V0530Mon.exe] C:\Windows\V0530Mon.exe (Creative Technology Ltd.) O4 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000..\Run: [AdobeBridge] File not found O4 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000..\Run: [Sony Ericsson PC Companion] C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - E:\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01) O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.57.1 O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - E:\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - E:\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation) O30 - LSA: Security Packages - (livessp) - C:\Windows\System32\livessp.dll (Microsoft Corp.) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{3b698931-2ed3-11e0-a0ae-002215d644dd}\Shell - "" = AutoRun O33 - MountPoints2\{3b698931-2ed3-11e0-a0ae-002215d644dd}\Shell\AutoRun\command - "" = G:\Startme.exe O33 - MountPoints2\{58a01556-2e00-11df-8013-002215d644dd}\Shell - "" = AutoRun O33 - MountPoints2\{58a01556-2e00-11df-8013-002215d644dd}\Shell\AutoRun\command - "" = I:\Launcher.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: FastUserSwitchingCompatibility - File not found NetSvcs: Ias - File not found NetSvcs: Nla - File not found NetSvcs: Ntmssvc - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: SRService - File not found NetSvcs: WmdmPmSp - File not found NetSvcs: LogonHours - File not found NetSvcs: PCAudit - File not found NetSvcs: helpsvc - File not found NetSvcs: uploadmgr - File not found NetSvcs: Themes - C:\Windows\System32\themeservice.dll (Microsoft Corporation) NetSvcs: BDESVC - C:\Windows\System32\bdesvc.dll (Microsoft Corporation) MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk - - File not found MsConfig - StartUpFolder: C:^Users^Przemek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^IMVU.lnk - - File not found MsConfig - StartUpReg: [b]Adobe ARM[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]Adobe Reader Speed Launcher[/b] - hkey= - key= - E:\Adobe Acrobat Reader\Reader\Reader_sl.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]AdobeCS4ServiceManager[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]AutoStartNPSAgent[/b] - hkey= - key= - E:\Samsung PcStudio\NPSAgent.exe (Samsung Electronics Co., Ltd.) MsConfig - StartUpReg: [b]DAEMON Tools Lite[/b] - hkey= - key= - E:\Daemon Tools\DTLite.exe (DT Soft Ltd) MsConfig - StartUpReg: [b]Gadu-Gadu 10[/b] - hkey= - key= - E:\Gadu-Gadu 10\gg.exe (GG Network S.A.) MsConfig - StartUpReg: [b]IPLA![/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]NeroFilterCheck[/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]PC Suite Tray[/b] - hkey= - key= - E:\Nokia PC Suite\Nokia PC Suite 7\PCSuite.exe (Nokia) MsConfig - StartUpReg: [b]Skype[/b] - hkey= - key= - C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) MsConfig - StartUpReg: [b]SunJavaUpdateSched[/b] - hkey= - key= - C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.) MsConfig - State: "startup" - 2 SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: NTDS - File not found SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Power - C:\Windows\System32\umpo.dll (Microsoft Corporation) SafeBootMin: Primary disk - Driver Group SafeBootMin: RpcEptMapper - C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation) SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: System Bus Extender - Driver Group SafeBootMin: vmms - Service SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: Dhcp - C:\Windows\System32\dhcpcore.dll (Microsoft Corporation) SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: Messenger - Service SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: ndiscap - C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation) SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: NTDS - File not found SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Power - C:\Windows\System32\umpo.dll (Microsoft Corporation) SafeBootNet: Primary disk - Driver Group SafeBootNet: rdsessmgr - Service SafeBootNet: RpcEptMapper - C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation) SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: vmms - Service SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-02-11 11:54:39 | 000,000,000 | ---D | C] -- C:\_OTL [2011-02-10 14:51:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disc2Phone [2011-02-10 13:36:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snikers [2011-02-10 12:28:25 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox 4.0 Beta 11 [2011-02-10 12:07:21 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Roaming\Opera [2011-02-10 12:07:21 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Local\Opera [2011-02-10 12:07:17 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2011-02-10 10:01:58 | 000,294,400 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll [2011-02-10 10:01:58 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll [2011-02-08 19:28:12 | 000,000,000 | ---D | C] -- C:\Users\Przemek\dwhelper [2011-02-04 17:28:27 | 000,000,000 | ---D | C] -- C:\Users\Przemek\Desktop\Sony Ericsson W300i [2011-02-02 15:11:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony Ericsson [2011-02-02 15:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Ericsson [2011-02-02 15:11:13 | 000,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson [2011-01-31 11:53:09 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro [2011-01-31 11:53:09 | 000,000,000 | ---D | C] -- C:\rsit [2011-01-31 10:21:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET [2011-01-31 10:21:53 | 000,000,000 | ---D | C] -- C:\Program Files\ESET [2011-01-31 09:42:36 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Roaming\BitDefender [2011-01-31 09:42:18 | 000,000,000 | ---D | C] -- C:\ProgramData\BitDefender [2011-01-31 09:41:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\BitDefender [2011-01-30 23:30:34 | 000,017,488 | ---- | C] (Windows (R) 2000 DDK provider) -- C:\Windows\gdrv.sys [2011-01-23 15:53:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Watchtower Library 2010 [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-02-11 11:59:42 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-02-11 11:59:42 | 000,000,250 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2011-02-11 11:59:39 | 000,000,294 | -H-- | M] () -- C:\Windows\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job [2011-02-11 11:59:25 | 000,017,488 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\Windows\gdrv.sys [2011-02-11 11:59:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-02-11 11:59:12 | 1609,424,896 | -HS- | M] () -- C:\hiberfil.sys [2011-02-11 11:17:30 | 000,017,360 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011-02-11 11:17:30 | 000,017,360 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011-02-11 11:12:00 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-02-10 14:57:35 | 000,757,208 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-02-10 14:57:35 | 000,682,336 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-02-10 14:57:35 | 000,159,196 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-02-10 14:57:35 | 000,128,844 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-02-10 14:51:19 | 000,001,528 | ---- | M] () -- C:\Users\Public\Desktop\Disc2Phone.lnk [2011-02-10 14:37:59 | 002,535,040 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2011-02-10 12:28:28 | 000,002,133 | ---- | M] () -- C:\Users\Przemek\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:28:28 | 000,002,109 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:07:20 | 000,001,794 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2011-02-02 15:22:14 | 000,002,229 | ---- | M] () -- C:\Users\Public\Desktop\Sony Ericsson PC Companion 2.0.lnk [2011-02-02 13:02:26 | 000,438,184 | ---- | M] () -- C:\Windows\unins000.dat [2011-02-02 13:02:08 | 000,725,005 | ---- | M] () -- C:\Windows\unins000.exe [2011-01-31 10:05:37 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt [2011-01-31 09:53:07 | 000,081,984 | ---- | M] () -- C:\Windows\System32\bdod.bin [2011-01-30 23:23:42 | 000,000,010 | ---- | M] () -- C:\Windows\GSetup.ini [2011-01-23 15:53:26 | 000,000,846 | ---- | M] () -- C:\Users\Przemek\Desktop\Watchtower Library 2010 - wydanie polskie.lnk [2011-01-18 16:00:53 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-02-10 14:51:19 | 000,001,528 | ---- | C] () -- C:\Users\Public\Desktop\Disc2Phone.lnk [2011-02-10 12:28:28 | 000,002,133 | ---- | C] () -- C:\Users\Przemek\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:28:27 | 000,002,121 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:28:27 | 000,002,109 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox 4.0 Beta 11.lnk [2011-02-10 12:07:20 | 000,001,806 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk [2011-02-10 12:07:20 | 000,001,794 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2011-02-02 15:11:19 | 000,002,229 | ---- | C] () -- C:\Users\Public\Desktop\Sony Ericsson PC Companion 2.0.lnk [2011-01-31 09:53:07 | 000,081,984 | ---- | C] () -- C:\Windows\System32\bdod.bin [2011-01-23 15:53:26 | 000,000,846 | ---- | C] () -- C:\Users\Przemek\Desktop\Watchtower Library 2010 - wydanie polskie.lnk [2010-11-15 15:01:13 | 000,000,019 | ---- | C] () -- C:\Windows\cie12.ini [2010-08-03 13:13:49 | 002,325,304 | ---- | C] () -- C:\Windows\System32\DK2INST.DLL [2010-07-11 16:01:17 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini [2010-05-27 09:32:16 | 000,024,576 | ---- | C] () -- C:\Users\Przemek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-04-15 07:55:27 | 000,000,095 | ---- | C] () -- C:\Users\Przemek\AppData\Local\fusioncache.dat [2010-03-27 17:26:46 | 000,000,027 | ---- | C] () -- C:\Windows\BRPP2KA.INI [2010-03-27 17:26:45 | 000,000,404 | ---- | C] () -- C:\Windows\BRWMARK.INI [2010-03-14 17:08:22 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll [2010-03-14 17:08:22 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys [2010-03-12 17:20:56 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2010-03-12 17:05:59 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2010-03-11 21:29:03 | 000,073,728 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll [2010-03-11 21:22:55 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini [2009-07-14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009-07-14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2007-10-25 17:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys [color=#E56717]========== LOP Check ==========[/color] [2010-08-04 12:26:18 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\AnvSoft [2010-03-14 15:11:55 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Ashampoo [2011-01-31 09:42:36 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\BitDefender [2010-03-12 08:03:28 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\COWON [2010-03-12 19:01:15 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\DAEMON Tools Lite [2010-03-12 08:16:14 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Gadu-Gadu 10 [2010-03-12 16:47:52 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\HEXelon [2010-10-22 17:05:57 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\ipla [2010-03-17 16:41:16 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\maxup [2010-04-08 19:39:56 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\MP3Rocket [2010-08-09 13:22:11 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Nokia [2010-11-13 19:30:59 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\OpenCandy [2011-02-10 12:07:21 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Opera [2010-08-09 13:17:43 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\PC Suite [2010-03-14 17:08:14 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Samsung [2010-10-01 14:50:03 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Softland [2010-07-19 17:34:02 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\STOIK [2010-05-11 17:30:32 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Thunderbird [2011-01-09 11:16:00 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Ubisoft [2011-01-01 14:55:24 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\uTorrent [2010-03-14 15:30:15 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Vivox [2010-06-07 13:37:05 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\VULCAN [2011-01-23 15:55:05 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\Watchtower [2010-03-20 19:33:44 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\COWON [2010-08-31 17:50:29 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\PC Suite [2010-11-15 18:38:32 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\Softland [2010-05-11 19:32:20 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\Thunderbird [2010-11-15 17:36:11 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\uTorrent [2010-06-07 19:22:48 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\VULCAN [2011-01-25 21:42:14 | 000,000,000 | ---D | M] -- C:\Users\Zbyszek\AppData\Roaming\Watchtower [2010-12-29 12:22:57 | 000,032,542 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2011-02-11 11:59:42 | 000,000,250 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2011-02-11 11:59:39 | 000,000,294 | -H-- | M] () -- C:\Windows\Tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2002-08-29 19:44:48 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\advapi32.dll [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat [2009-07-14 02:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr [2010-03-12 11:56:00 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK [2009-06-10 22:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys [2010-06-08 19:48:41 | 000,597,504 | ---- | M] (Microsoft Corporation) -- C:\crypt32.dll [2010-03-11 21:29:27 | 000,000,010 | ---- | M] () -- C:\csb.log [2010-03-12 17:21:30 | 000,364,281 | RHS- | M] () -- C:\FPKCQ [2011-02-11 11:59:12 | 1609,424,896 | -HS- | M] () -- C:\hiberfil.sys [2010-03-11 21:29:15 | 000,000,190 | ---- | M] () -- C:\Install.log [2010-09-26 17:51:48 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-09-26 17:51:48 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2011-02-11 11:59:14 | 2145,902,592 | -HS- | M] () -- C:\pagefile.sys [2010-03-11 21:26:34 | 000,001,841 | ---- | M] () -- C:\RHDSetup.log [2011-02-11 12:05:48 | 000,003,380 | ---- | M] () -- C:\service.log [2010-06-16 21:22:53 | 000,000,000 | ---- | M] () -- C:\udugi.log [2010-03-12 17:21:30 | 000,000,020 | RHS- | M] () -- C:\winx.ld [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2009-07-14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys [2009-07-14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_65848c2d7375a720\AGP440.sys [2009-07-14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2009-07-14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys [2009-07-14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_f64b9c35a3a5be81\atapi.sys [2009-07-14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2009-07-14 00:45:01 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=505506526A9D467307B3C393DEDAF858 -- C:\Windows\System32\drivers\beep.sys [2009-07-14 00:45:01 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=505506526A9D467307B3C393DEDAF858 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_c3f6f77668f0ddcc\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2009-07-14 00:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\System32\drivers\cdrom.sys [2009-07-14 00:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_db87d184bc84f910\cdrom.sys [2009-07-14 00:11:26 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BA6E70AA0E6091BC39DE29477D866A77 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_5f7fb206051affbb\cdrom.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2009-07-14 02:20:44 | 000,710,720 | ---- | M] (Microsoft Corporation) MD5=23759D175A0A9BAAF04D05047BC135A8 -- C:\Windows\System32\drivers\ndis.sys [2009-07-14 02:20:44 | 000,710,720 | ---- | M] (Microsoft Corporation) MD5=23759D175A0A9BAAF04D05047BC135A8 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_a79d81ea7d62a289\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2009-10-28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\System32\winlogon.exe [2009-10-28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe [2009-10-28 06:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe [2009-07-14 02:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:2C595FF3 < End of report > [/log] [log]OTL Extras logfile created on: 2011-02-11 12:02:42 - Run 5 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Przemek\Desktop\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 51,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 72,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 29,30 Gb Total Space | 4,28 Gb Free Space | 14,62% Space Free | Partition Type: NTFS Drive D: | 48,83 Gb Total Space | 13,02 Gb Free Space | 26,66% Space Free | Partition Type: NTFS Drive E: | 219,96 Gb Total Space | 200,26 Gb Free Space | 91,04% Space Free | Partition Type: NTFS Computer Name: PRZEMEK-PC | User Name: Przemek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) [HKEY_USERS\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "E:\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "E:\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- E:\MICROS~1\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Directory [Winamp.Bookmark] -- "E:\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.) Directory [Winamp.Enqueue] -- "E:\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.) Directory [Winamp.Play] -- "E:\Winamp\winamp.exe" "%1" (Nullsoft, Inc.) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4 "{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4 "{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4 "{089DD780-DB3F-4CDB-A0C2-111360247298}" = PC Connectivity Solution "{098727E1-775A-4450-B573-3F441F1CA243}" = kuler "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4 "{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup "{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4 "{121C822F-7DBA-4A54-AC12-0EE12B273495}" = ESET NOD32 Antivirus "{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4 "{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB "{171E6C1E-B5FC-11DF-B115-005056C00008}" = Google Earth Plug-in "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}" = Nokia PC Suite "{26A24AE4-039D-4CA4-87B4-2F83216019FF}" = Java(TM) 6 Update 20 "{3248F0A8-6813-11D6-A77B-00B0D0160010}" = Java(TM) SE Runtime Environment 6 Update 1 "{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4 "{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4 "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4 "{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin "{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform "{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English) "{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4 "{56B4002F-671C-49F4-984C-C760FE3806B5}" = Microsoft SQL Server VSS Writer "{61AD15B2-50DB-4686-A739-14FE180D4429}" = Windows Live ID Sign-in Assistant "{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4 "{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support "{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6A05FEDF-662E-46BF-8A25-010E3F1C9C69}" = Windows Live UX Platform Language Pack "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{72736F5F-520D-472A-88CC-7B02872FD34E}" = ATI Catalyst Registration "{7E84FAC8-C518-40F9-9807-7455301D6D25}" = SamsungConnectivityCableDriver "{7ED169D4-5053-4166-93DF-53B12AE6C539}" = Energy Saver Advance B9.0730.1 "{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4 "{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4 "{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8CE08C3C-8FF4-45D9-925E-4F3CE2D7FA7D}" = Adobe Setup "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{904CCF62-818D-4675-BC76-D37EB399F917}" = Windows Mobile Device Center "{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4 "{934528B2-09B3-C6E5-288A-4E554E6DF2B9}" = ATI Catalyst Install Manager "{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}" = Brother MFL-Pro Suite DCP-150C "{A6CD8FC5-9CB0-4F48-BBB7-2C68FD4A3153}" = Nokia Firmware RM-133 ME_EMEA "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA7B0DE4-E3CA-443F-B1CF-418431664C63}" = Windows Live Movie Maker "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.1 - Polish "{B0F9497C-52B4-4686-8E73-74D866BBDF59}" = Microsoft SQL Server 2005 (SQLEXPRESS) "{B29AD377-CC12-490A-A480-1452337C618D}" = Connect "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4 "{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module "{BD68F46D-8A82-4664-8E68-F87C55BDEFD4}" = Microsoft SQL Server Native Client "{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2 "{D385C907-19E0-4CF7-82C1-A597B8558853}" = Watchtower Library 2010 - wydanie polskie "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}" = COWON Media Center - jetAudio Basic VX "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E2883E8F-472F-4fb0-9522-AC9BF37916A7}" = Adobe Download Manager "{E39C185F-1240-4BA7-A03B-4FD99805D63E}" = Galeria fotografii usługi Windows Live "{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4 "{E580DFEA-3F1D-4B56-9115-984217032FF5}" = Windows Live Sync "{EBB794ED-D282-4334-92FB-254481EFF514}" = Pro Evolution Soccer 6 "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.01.110 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "{F1FDAA01-988C-423F-AC12-0D8F333943FD}" = Nokia Connectivity Cable Driver "{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4 "{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4 "{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "{FFAB5ABB-8AAB-42E2-847F-1743E51E01E9}" = Disc2Phone "34EA302E7F4CBD17A19E33BBCB72363234956D7E" = Windows Driver Package - Nokia Modem (06/09/2010 4.5) "504244733D18C8F63FF584AEB290E3904E791693" = Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe_2a31ae7a5c43ff52d8577782dd34e04" = Adobe Illustrator CS4 "Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4 "Any Video Converter_is1" = Any Video Converter 3.0.7 "Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010 "Creative VF0530" = Creative Live! Cam Chat IM (VF0530) (1.02.02.00) "CSINYUbisoft" = CSI NY "EEEE705096F837B7907659F100C9FE6DA001970F" = Windows Driver Package - Nokia Modem (06/09/2010 7.01.0.7) "Enable S3 for USB Device" = Enable S3 for USB Device "ENTERPRISE" = Microsoft Office Enterprise 2007 "Gadu-Gadu 10" = Gadu-Gadu 10 "InstallShield_{EBB794ED-D282-4334-92FB-254481EFF514}" = Pro Evolution Soccer 6 "InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}" = Samsung New PC Studio "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft SQL Server 2005" = Microsoft SQL Server 2005 "Mozilla Firefox 4.0b11 (x86 pl)" = Mozilla Firefox 4.0b11 (x86 pl) "Mozilla Thunderbird (3.1.7)" = Mozilla Thunderbird (3.1.7) "Nokia PC Suite" = Nokia PC Suite "OJOsoft Audio Converter_is1" = OJOsoft Audio Converter "Opera 11.01.1190" = Opera 11.01 "Picasa 3" = Picasa 3 "RMVB Player_is1" = RMVB Player 1.0 "SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software "SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set "Samsung Mobile Modem Device" = Samsung Mobile Modem Device Software "Samsung Mobile phone USB driver Drive" = Samsung Mobile phone USB driver Drive Software "SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software "SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software "SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software "TC UP" = Total Commander Ultima Prime 5.0.0.0 "TopStyle Lite (Version 3.0)" = TopStyle Lite (Version 3) "TSLite3_is1" = TopStyle Lite (Version 3) "Turbo Photo_is1" = Turbo Photo 6.4 "uTorrent" = µTorrent "WebSite PRO_is1" = WebSite PRO 4.3 "Winamp" = Winamp "WinLiveSuite" = Windows Live Essentials "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-1575325557-3612739941-1330803733-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Detektor Winampa [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-02-10 09:58:30 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:30.305]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:31 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:31.806]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:33 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:33.306]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:34 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:34.806]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:36 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:36.306]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:37 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:37.806]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:39 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:39.306]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:40 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:40.806]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:42 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:42.306]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 Error - 2011-02-10 09:58:43 | Computer Name = Przemek-PC | Source = Brother BrLog | ID = 1001 Description = WDLMW BrtWDLMW: [2011/02/10 14:58:43.808]: [00004056]: lperrcode->api = 1 , lperrcode->code = 2 [ OSession Events ] Error - 2011-01-30 09:41:49 | Computer Name = Przemek-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 138 seconds with 120 seconds of active time. This session ended with a crash. [ System Events ] Error - 2011-02-11 06:09:45 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi avast! iAVS4 Control Service z powodu nastepujacego bledu: %%2 Error - 2011-02-11 06:09:47 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7009 Description = Uplynal limit czasu (30000 ms) podczas oczekiwania na polaczenie sie z usluga Eset Trial Reset. Error - 2011-02-11 06:09:47 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi Eset Trial Reset z powodu nastepujacego bledu: %%1053 Error - 2011-02-11 06:10:15 | Computer Name = Przemek-PC | Source = Microsoft-Windows-Eventlog | ID = 23 Description = Usluga rejestrowania zdarzen napotkala blad (zasób=5) podczas inicjowania zasobów rejestrowana dla kanalu Microsoft-Windows-Resource-Exhaustion-Detector/Operational. Error - 2011-02-11 06:54:40 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7034 Description = Usluga Apache2.2 niespodziewanie zakonczyla prace. Wystapilo to razy: 1. Error - 2011-02-11 06:59:12 | Computer Name = Przemek-PC | Source = Microsoft-Windows-Kernel-General | ID = 5 Description = Error - 2011-02-11 06:59:24 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi avast! iAVS4 Control Service z powodu nastepujacego bledu: %%2 Error - 2011-02-11 06:59:24 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7009 Description = Uplynal limit czasu (30000 ms) podczas oczekiwania na polaczenie sie z usluga Eset Trial Reset. Error - 2011-02-11 06:59:24 | Computer Name = Przemek-PC | Source = Service Control Manager | ID = 7000 Description = Nie mozna uruchomic uslugi Eset Trial Reset z powodu nastepujacego bledu: %%1053 Error - 2011-02-11 06:59:50 | Computer Name = Przemek-PC | Source = Microsoft-Windows-Eventlog | ID = 23 Description = Usluga rejestrowania zdarzen napotkala blad (zasób=5) podczas inicjowania zasobów rejestrowana dla kanalu Microsoft-Windows-Resource-Exhaustion-Detector/Operational. < End of report > [/log] [b]RSIT[/b] [log]Logfile of random's system information tool 1.08 (written by random/random) Run by Przemek at 2011-02-11 12:02:48 Microsoft Windows 7 Ultimate System drive C: has 4 GB (15%) free of 30 GB Total RAM: 2046 MB (51% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:03:17, on 2011-02-11 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16722) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Windows\V0530Mon.exe C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe C:\Windows\WindowsMobile\wmdc.exe C:\Program Files\Brother\ControlCenter3\brccMCtl.exe E:\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe C:\Users\Przemek\Desktop\Downloads\OTL.exe C:\Users\Przemek\Desktop\Downloads\RSIT.exe C:\Program Files\trend micro\Przemek.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Java\bin\jp2ssv.dll O2 - BHO: IEPluginBHO - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.2.dll (file missing) O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe" O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe O4 - HKLM\..\Run: [V0530Mon.exe] C:\Windows\V0530Mon.exe O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [GrooveMonitor] "E:\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA LOKALNA') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA SIECIOWA') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA SIECIOWA') O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://E:\MICROS~1\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://E:\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Wyslij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Wyslij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - E:\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Apache2.2 - Apache Software Foundation - E:\Xampp\xampp\apache\bin\httpd.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - E:\Avast\aswUpdSv.exe (file missing) O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe O23 - Service: Usluga Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: MySQL - MySQL AB - E:\Xampp\xampp\mysql\bin\mysqld.exe O23 - Service: NMSAccess - Unknown owner - E:\Blaze Media Pro\NMSAccess32.exe (file missing) O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- End of file - 7036 bytes ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job C:\Windows\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - E:\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - E:\Java\bin\jp2ssv.dll [2010-05-27 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D}] IEPluginBHO Class - C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.2.dll [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2009-06-14 307200] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-06-25 7547424] "NPSStartup"= [] "V0530Mon.exe"=C:\Windows\V0530Mon.exe [2008-02-18 28672] "BrMfcWnd"=C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [2009-05-26 1159168] "ControlCenter3"=C:\Program Files\Brother\ControlCenter3\brctrcen.exe [2008-12-24 114688] "Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072] "GrooveMonitor"=E:\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072] "egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-11-04 2219184] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "AdobeBridge"= [] "Sony Ericsson PC Companion"=C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-05 424448] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] E:\Adobe Acrobat Reader\Reader\Reader_sl.exe [2010-09-23 35760] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStartNPSAgent] E:\Samsung PcStudio\NPSAgent.exe [2009-04-02 102400] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] E:\Daemon Tools\DTLite.exe [2009-10-30 369200] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu 10] E:\Gadu-Gadu 10\gg.exe [2010-10-07 12661344] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!] C:\Program Files\ipla\ipla.exe /autorun [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] C:\Windows\system32\NeroCheck.exe [2001-07-09 155648] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray] E:\Nokia PC Suite\Nokia PC Suite 7\PCSuite.exe [2010-05-14 1479680] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] C:\Program Files\Skype\Phone\Skype.exe [2010-04-20 26192680] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk] C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Przemek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^IMVU.lnk] C:\Users\Przemek\AppData\Roaming\IMVUCL~1\IMVUQU~1.EXE --startup [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=E:\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=0 "ConsentPromptBehaviorUser"=3 "EnableLUA"=0 "EnableUIADesktopToggle"=0 "PromptOnSecureDesktop"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 months====== 2011-02-11 11:54:39 ----D---- C:\_OTL 2011-02-10 12:28:25 ----D---- C:\Program Files\Mozilla Firefox 4.0 Beta 11 2011-02-10 12:07:21 ----D---- C:\Users\Przemek\AppData\Roaming\Opera 2011-02-10 12:07:17 ----D---- C:\Program Files\Opera 2011-02-10 10:26:25 ----A---- C:\Windows\system32\mshtml.dll 2011-02-10 10:26:15 ----A---- C:\Windows\system32\msfeeds.dll 2011-02-10 10:26:14 ----A---- C:\Windows\system32\mstime.dll 2011-02-10 10:26:14 ----A---- C:\Windows\system32\iedkcs32.dll 2011-02-10 10:26:13 ----A---- C:\Windows\system32\mshtmled.dll 2011-02-10 10:26:13 ----A---- C:\Windows\system32\msfeedssync.exe 2011-02-10 10:26:13 ----A---- C:\Windows\system32\msfeedsbs.dll 2011-02-10 10:26:13 ----A---- C:\Windows\system32\licmgr10.dll 2011-02-10 10:26:13 ----A---- C:\Windows\system32\iertutil.dll 2011-02-10 10:26:13 ----A---- C:\Windows\system32\iepeers.dll 2011-02-10 10:03:44 ----A---- C:\Windows\system32\upnp.dll 2011-02-10 10:03:42 ----A---- C:\Windows\system32\urlmon.dll 2011-02-10 10:03:41 ----A---- C:\Windows\system32\wininet.dll 2011-02-10 10:03:41 ----A---- C:\Windows\system32\msxml6.dll 2011-02-10 10:03:40 ----A---- C:\Windows\system32\msxml3.dll 2011-02-10 10:03:39 ----A---- C:\Windows\system32\ieframe.dll 2011-02-10 10:03:38 ----A---- C:\Windows\system32\wscsvc.dll 2011-02-10 10:03:38 ----A---- C:\Windows\system32\wscapi.dll 2011-02-10 10:03:38 ----A---- C:\Windows\system32\winhttp.dll 2011-02-10 10:03:38 ----A---- C:\Windows\system32\WebClnt.dll 2011-02-10 10:03:38 ----A---- C:\Windows\system32\slwga.dll 2011-02-10 10:03:38 ----A---- C:\Windows\system32\davclnt.dll 2011-02-10 10:03:17 ----A---- C:\Windows\system32\drivers\dxgmms1.sys 2011-02-10 10:03:16 ----A---- C:\Windows\system32\win32k.sys 2011-02-10 10:03:10 ----A---- C:\Windows\system32\kerberos.dll 2011-02-10 10:03:08 ----A---- C:\Windows\system32\jscript.dll 2011-02-10 10:03:07 ----A---- C:\Windows\system32\vbscript.dll 2011-02-10 10:01:58 ----A---- C:\Windows\system32\atmlib.dll 2011-02-10 10:01:58 ----A---- C:\Windows\system32\atmfd.dll 2011-02-10 10:01:56 ----A---- C:\Windows\system32\ntdll.dll 2011-02-10 10:01:55 ----A---- C:\Windows\system32\ntoskrnl.exe 2011-02-10 10:01:55 ----A---- C:\Windows\system32\ntkrnlpa.exe 2011-02-02 15:11:13 ----D---- C:\ProgramData\Sony Ericsson 2011-02-02 15:11:13 ----D---- C:\Program Files\Sony Ericsson 2011-01-31 11:53:09 ----D---- C:\rsit 2011-01-31 11:53:09 ----D---- C:\Program Files\trend micro 2011-01-31 10:21:53 ----D---- C:\Program Files\ESET 2011-01-31 09:42:36 ----D---- C:\Users\Przemek\AppData\Roaming\BitDefender 2011-01-31 09:42:18 ----D---- C:\ProgramData\BitDefender 2011-01-31 09:41:20 ----D---- C:\Program Files\Common Files\BitDefender 2011-01-30 23:30:34 ----A---- C:\Windows\gdrv.sys 2011-01-30 23:03:31 ----ASH---- C:\pagefile.sys 2011-01-12 19:12:46 ----A---- C:\Windows\system32\d3d10warp.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\XpsPrint.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\FntCache.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\DWrite.dll 2011-01-12 19:12:45 ----A---- C:\Windows\system32\d2d1.dll 2011-01-12 19:12:44 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2011-01-12 19:12:44 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys 2011-01-12 19:12:44 ----A---- C:\Windows\system32\d3d10_1core.dll 2011-01-12 19:12:44 ----A---- C:\Windows\system32\cdd.dll 2011-01-12 19:12:43 ----A---- C:\Windows\system32\XpsRasterService.dll 2011-01-12 19:12:43 ----A---- C:\Windows\system32\ExplorerFrame.dll 2011-01-12 19:12:43 ----A---- C:\Windows\system32\d3d10_1.dll 2011-01-12 19:09:07 ----A---- C:\Windows\system32\odbc32.dll ======List of files/folders modified in the last 1 months====== 2011-02-11 12:02:55 ----D---- C:\Windows\Temp 2011-02-11 11:59:50 ----D---- C:\Windows\system32\config 2011-02-11 11:19:22 ----SHD---- C:\System Volume Information 2011-02-10 14:57:35 ----D---- C:\Windows\System32 2011-02-10 14:57:35 ----A---- C:\Windows\system32\PerfStringBackup.INI 2011-02-10 14:57:34 ----D---- C:\Windows\inf 2011-02-10 14:52:02 ----D---- C:\Windows 2011-02-10 14:51:21 ----SHD---- C:\Windows\Installer 2011-02-10 14:50:58 ----D---- C:\Windows\Registration 2011-02-10 14:49:17 ----D---- C:\Program Files\Internet Explorer 2011-02-10 14:38:26 ----D---- C:\Windows\winsxs 2011-02-10 14:36:23 ----D---- C:\Windows\system32\drivers 2011-02-10 14:09:44 ----A---- C:\Windows\system32\MRT.exe 2011-02-10 14:08:56 ----D---- C:\ProgramData\Microsoft Help 2011-02-10 12:32:40 ----RD---- C:\Program Files 2011-02-10 09:58:33 ----D---- C:\Windows\system32\catroot 2011-02-10 09:58:27 ----D---- C:\Windows\system32\catroot2 2011-02-02 17:11:20 ----N---- C:\Windows\system32\MpSigStub.exe 2011-02-02 15:22:19 ----D---- C:\Windows\system32\DriverStore 2011-02-02 15:22:08 ----HD---- C:\Program Files\InstallShield Installation Information 2011-02-02 15:11:13 ----HD---- C:\ProgramData 2011-02-02 13:02:08 ----A---- C:\Windows\unins000.exe 2011-02-02 12:02:22 ----D---- C:\Windows\system32\Tasks 2011-01-31 09:49:07 ----D---- C:\Windows\system32\drivers\etc 2011-01-31 09:41:20 ----D---- C:\Program Files\Common Files 2011-01-30 23:26:22 ----RD---- C:\Program Files\Skype 2011-01-30 23:23:42 ----A---- C:\Windows\GSetup.ini 2011-01-30 23:15:17 ----D---- C:\Program Files\GIGABYTE 2011-01-30 22:39:43 ----SD---- C:\Users\Przemek\AppData\Roaming\Microsoft 2011-01-23 15:55:05 ----D---- C:\Users\Przemek\AppData\Roaming\Watchtower 2011-01-18 16:00:53 ----A---- C:\Windows\NeroDigital.ini ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-02-23 43872] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-03-12 691696] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584] R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-07-29 115008] R1 VD_FileDisk;VD_FileDisk; C:\Windows\system32\drivers\VD_FileDisk.sys [2006-01-13 15872] R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-09-03 137144] R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-07-29 96920] R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704] R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 4194816] R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-03-31 36608] R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-02-11 17488] R3 GearAspiWDM;GEARAspiWDM; C:\Windows\System32\drivers\GEARAspiWDM.sys [2008-02-22 16168] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-06-25 2375776] R3 ip100Avista;ASUS NX1001 Network Adapter NT Driver; C:\Windows\system32\DRIVERS\ipfnd51.sys [2010-03-11 29696] R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-30 187392] R3 V0530Dev;Creative Camera VF0530 Driver; C:\Windows\system32\DRIVERS\V0530Vid.sys [2009-12-14 273728] S3 acp435on;acp435on; C:\Windows\system32\drivers\acp435on.sys [] S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720] S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888] S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2010-02-26 18176] S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2010-02-26 22528] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816] S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120] S3 RimUsb;BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb.sys [2007-05-14 22656] S3 s1039bus;Sony Ericsson Device 1039 driver (WDM); C:\Windows\system32\DRIVERS\s1039bus.sys [2010-03-01 98672] S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1039mdfl.sys [2010-03-01 14960] S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1039mdm.sys [2010-03-01 124016] S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1039mgmt.sys [2010-03-01 117872] S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1039nd5.sys [2010-03-01 25456] S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1039obex.sys [2010-03-01 113904] S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1039unic.sys [2010-03-01 123504] S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632] S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304] S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-03-20 90112] S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-03-20 14976] S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-03-20 121856] S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224] S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192] S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840] S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648] S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192] S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328] S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736] S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824] S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920] S3 WinUsb;WinUsb Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Apache2.2;Apache2.2; E:\Xampp\xampp\apache\bin\httpd.exe [2009-12-19 29416] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992] R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-04 810144] R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2009-03-31 233472] R2 GEST Service;GEST Service for program management.; C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe [2009-07-30 68136] R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2009-05-27 29262680] R2 MySQL;MySQL; E:\Xampp\xampp\mysql\bin\mysqld.exe [2009-12-19 6095504] R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 20992] R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-24 87904] R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 20992] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464] S2 .EsetTrialReset;Eset Trial Reset; C:\Windows\system32\regedt32.exe [2009-07-14 9216] S2 aswUpdSv;avast! iAVS4 Control Service; E:\Avast\aswUpdSv.exe [] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 gupdate;Usluga Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-05-14 136176] S2 NMSAccess;NMSAccess; E:\Blaze Media Pro\NMSAccess32.exe [] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-06-10 31064] S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-11-04 33584] S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-05-06 655624] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-04 136120] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; E:\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888] S3 nosGetPlusHelper;getPlus(R) Helper 3004; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936] S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-13 1343400] S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408] S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968] -----------------EOF----------------- [/log]
Tomek01 komentarz 11 lutego 2011 komentarz 11 lutego 2011 Co znaczy, że Twój pecet nie czuje się dobrze ? Kosmetycznie wklej do OTL: [code]:Files C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job C:\Windows\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job :Commmands [emptytemp][/code] W OTL użyj funkcji Clean Up. Wyłącz a następnie włącz przywracanie systemu na wszystkich partycjach. Użyj ATF Cleaner, zaznacz trzy pierwsze fajki i empty selected. Wykonaj pełny skan [url=http://www.instalki.pl/programy/download_c/14/155.html][color=#0000CD][b]DrWebCureIt[/b][/color][/url] oraz [url=http://www.instalki.pl/programy/download_c/13/96.html][color=#0000CD][b]Malwarebytes Anti-Malware[/b][/color][/url] i jakby coś wykryły raporty pokaż na forum. 1
przemek980 komentarz 12 lutego 2011 Autor komentarz 12 lutego 2011 (edytowane) Dziękuję Sporo tego, postaram się uporać w najbliższym czasie. Co do samopoczucia... raz czyta a raz nie czyta USB, ma problemy z bootowaniem (m.in. nie pokazuje ekranu początkowego bootowania). Mam nadzieję, że Twoje rady pomogą. EDIT Wklejam log z Malwarebyte. Wykrył 8 zagrożeń. [log]Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Wersja bazy: 5752 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 2011-02-13 14:14:22 mbam-log-2011-02-13 (14-14-17).txt Typ skanowania: Pe³ne skanowanie (C:\|D:\|E:\|) Przeskanowano obiektów: 297102 Up³ynê³o: 37 minut(y), 1 sekund(y) Zainfekowanych procesów w pamiêci: 0 Zainfekowanych modu³ów w pamiêci: 0 Zainfekowanych kluczy rejestru: 4 Zainfekowanych wartoœci rejestru: 0 Zainfekowane informacje rejestru systemowego: 0 Zainfekowanych folderów: 0 Zainfekowanych plików: 4 Zainfekowanych procesów w pamiêci: (Nie znaleziono zagro¿eñ) Zainfekowanych modu³ów w pamiêci: (Nie znaleziono zagro¿eñ) Zainfekowanych kluczy rejestru: HKEY_CURRENT_USER\SOFTWARE\C8H1KKCTZV (Trojan.FakeAlert) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\ (Hijack.Zones) -> No action taken. Zainfekowanych wartoœci rejestru: (Nie znaleziono zagro¿eñ) Zainfekowane informacje rejestru systemowego: (Nie znaleziono zagro¿eñ) Zainfekowanych folderów: (Nie znaleziono zagro¿eñ) Zainfekowanych plików: c:\Windows\Qriqaa.exe (Trojan.FraudPack) -> No action taken. e:\TC UP\PLUGINS\Tools\revelation\revelation.exe (HackTool.Snadboy) -> No action taken. c:\Windows\Tasks\{35dc3473-a719-4d14-b7c1-fd326ca84a0c}.job (Trojan.Downloader) -> No action taken. c:\Windows\Tasks\{bbaeaeaf-1275-40e2-bd6c-bc8f88bd114a}.job (Trojan.Downloader) -> No action taken. [/log]
Tomek01 komentarz 14 lutego 2011 komentarz 14 lutego 2011 W trybie skanu wszystko do usunięcia. Co z DrWeb'em ?
przemek980 komentarz 18 lutego 2011 Autor komentarz 18 lutego 2011 Przepraszam za zwłokę, ale nie mogłem wcześniej. Usunąłem wszystko. Dr Web nic nie wykrył. USB też już działa (problem leżał w programie Deamon Tools). Dziękuję za pomoc
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.